Contact Form 7 has patched a critical file upload vulnerability in version 5.3.2, released today by plugin author Takayuki Miyoshi. The plugin is installed on more than five million WordPress sites. “An unrestricted file upload vulnerability has been found in Contact Form 7 5.3.1 and older versions,” Miyoshi said. “Utilizing this vulnerability, a form submitter can bypass Contact Form 7’s …
Mapbox GL JS Is No Longer Open Source
Mapbox GL JS, formerly an open source JavaScript library for interactive, customizable vector maps, has adopted a proprietary license in its recent version 2 update: mapbox-gl-js is no longer under the 3-Clause BSD license. By upgrading to this release, you are agreeing to Mapbox terms of service. Refer to LICENSE.txt for the new licensing terms and details. For questions, contact our team …
Learn WordPress Platform Launches with Free Courses, Workshops, and Lesson Plans
WordPress.org has officially launched its new “Learn WordPress” platform, a free educational resource that includes courses, workshops, quizzes, lesson plans, and discussion groups. The material spans the spectrum of WordPress experience from beginners to advanced, and and allows users to learn asynchronously at their own pace. After a successful beta launch in August, the platform is now ready for the …
G2 Components, a From-Scratch Reimagining of WordPress Components
Update some of the things. That was the goal that Jon Quach, a Principal Designer at Automattic, laid out in the roadmap for integrating the G2 Components project into Gutenberg and, eventually, core WordPress. The project is a reimagining of the pieces that make the block editor, a “from-scratch” overhaul of the component system. Updating all of the things or …
BuddyPress 7.0.0 Adds 3 New Blocks and Admin Screens for Member and Group Type Management
BuddyPress 7.0.0 “Filippi” was released this week, following WordPress 5.6 to ensure compatibility. This version was named for Filippi’s Pizza Grotto in California. It requires WordPress 4.9+, but sites that are not using the block editor will miss out on many of the new features that make BuddyPress websites easier to customize. The first set of community blocks was introduced earlier this …
State of the Word 2020 Scheduled for December 17, with Virtual Q&A
WordCamp US 2020, previously scheduled for October, was cancelled due to pandemic stress and online event fatigue. Organizers did opt for running it as an online event, but Matt Mullenweg’s annual State of the Word address will be delivered virtually this year. It will be streamed on Facebook, YouTube, and Twitter on Thursday, Dec 17th, 2020 at 1600 UTC. In previous years, the …
WordPress 5.6 “Simone” Includes New Twenty Twenty-One Theme and Improved Editor
Nina SimoneLicense: CC0 | Credit: Noord-Hollands Archief / Fotoburo de Boer WordPress 5.6 “Simone,” named in honor of American performer and civil rights activist Nina Simone, was released today and is now available for download. The release was led by an all-women release squad, a first in WordPress history. The new version includes many enhancements for the block editor, accessibility …
Easy WP SMTP 1.4.3 Patches Sensitive Data Disclosure Vulnerability
Easy WP SMTP has patched a vulnerability that allows attackers to capture the password reset link from the plugin’s debug log file and gain unauthorized access to the site. The plugin is used by more than 500,000 WordPress sites to configure and send all outgoing emails via a SMTP server so they are less likely to end up in recipients’ …
State of CSS 2020 Survey Results: Tailwind CSS Wins Most Adopted Technology, Utility-First CSS on the Rise
The State of CSS 2020 survey results have just been published, with a summary of the tools, methodologies, frameworks, and libraries that are currently favored by CSS professionals. It includes data from 11,492 respondents in 102 countries, after the questions were translated for the first time into a dozen different languages. In the layout category, CSS Grid logged a 34% …
WordPress Community Team Discusses Return to In-Person Events
Although the promise of effective COVID-19 vaccines is shining a light at the end of a long tunnel, the world remains firmly in the virus’ grip until distribution can ramp up to cover at-risk groups as well as the general populace. As pandemic-weary communities muster the discipline to ride out the next few months under continued restrictions, a new discussion …