Insert Font Awesome Icons Into the Block Editor via the JVM Gutenberg Rich Text Icons Plugin

Joris van Montfort, a freelance WordPress developer, released the JVM Gutenberg Rich Text Icons plugin over the weekend. The goal was simple: allow users to insert icons nearly anywhere in the block editor at the click of a button. The plugin uses version 4.7 of the Font Awesome library out of the box. However, developers can modify this to include …

Chrome 90 to Use HTTPS by Default in the Address Bar

Chrome’s upcoming version 90 will use https:// by default in the address bar, bringing a significant improvement to security and loading speed. HTTPS adoption has shot up significantly over the past six years after Google announced in 2014 that HTTPS would be used as a ranking signal in search results. In February 2021, W3Techs found that 82.2% of websites use a valid SSL certificate. …

New Private Slack Channel Created for Full-Time Sponsored WordPress Contributors

As part of an experiment designed to improve coordination of contributor teams, WordPress has launched a new Slack channel for full-time sponsored contributors. Josepha Haden Chomphosy, the project’s executive director, announced the new closed Slack channel on Friday evening in a post that drew critical feedback from contributors who pushed for more clarification. “2020 was filled with hardships for many …

Elementor Patches XSS Vulnerabilities Affecting 7 Million WordPress Sites

Elementor users who haven’t updated recently will want to get on the latest version 3.1.4 as soon as possible. Researchers at Wordfence disclosed a set of stored Cross-Site Scripting (XSS) vulnerabilities in the plugin to its authors in February, which was partially patched at that time and additional fixes were released the second week of March. Wordfence summarized the vulnerabilities in …

Attackers Continue to Exploit Vulnerabilities in The Plus Addons for Elementor Plugin

Last week, security researchers at Seravo and WP Charged reported a critical zero-day vulnerability in The Plus Addons for Elementor on March 8, 2021. WPScan categorized it as an authentication bypass vulnerability: The plugin is being actively exploited to by malicious actors to bypass authentication, allowing unauthenticated users to log in as any user (including admin) by just providing the …

Gutenberg Block Manager Plugin Enables Global Block Removal and Recategorization

The world of Gutenberg blocks is expanding. WordPress’ official block directory launched in June 2020 with just 60 single-block plugins. Today, it has grown to more than 480 blocks. As users incorporate more blocks into their websites, the block inserter can become a very long list to scroll when browsing. Block management capabilities were added to Gutenberg in version 5.3, …