Should WordPress notify users of plugin ownership changes? That was the question that Ian Atkins asked two months ago. WP Tavern readers seemed to think it was a good idea, at least those who commented on our coverage of it. However, the original Trac ticket has not seen any movement since. There are real technical issues with automating the process. …
Jetpack Launches Customer Research Project to Improve the Plugin and Reduce User Frustration
Jetpack’s Design and Research Team is launching a new customer research panel as part of an ongoing effort to collect feedback in advance of launching new features. They are allocating one day every month to talk with users: It’s a small step toward an important goal of better understanding what our users need, seeing and hearing first hand where they …
Ask the Bartender: How To Bulk Convert Classic WordPress Posts To Blocks?
I was wondering if you could help me. I want to convert all of my old posts (about 600) to Gutenberg blocks. Do you know an easy way to do that? Philip I often get these short questions via private messages. I always try my best to help other WordPress users whenever I can. This was an easy solution in …
Gutenberg 9.8 Brings Rounded Borders To the Group Block and Moves the Site Editor Canvas Into an Inline Frame
Gutenberg 9.8 launched yesterday with a few minor UI improvements. The development team added an initial implementation for border-radius support for the Group block that theme authors can opt into. They also moved the site editor into an iframe element to remove CSS conflicts from the global admin styles. Those who have been testing Full Site Editing should be pleased …
Custom Layouts Plugin Creates a Posts Display System for Both the Classic and Block Editors
Ross Morsali, via his brand Code Amp, released the Custom Layouts plugin last week. The plugin’s goal is to provide a visual post layout builder for users of both the block and classic editors. For end-users, this is yet another choice between the multitude of plugins for displaying posts. After years of new plugins launching in this space, it would …
All in One SEO Plugin Turns on Automatic Updates without Notifying Users, Removes Functionality in Latest Release
Buried in the changelog of a series of minor releases that dropped before the Christmas holiday, All in One SEO plugin users were given the surprise gift of automatic updates. After a seemingly endless run of releases (12 updates during a span of six weeks at the end of 2020), the plugin’s developers decided to change its auto update policy …
Master WordPress Security This January #SecurityMonth
There’s nothing more important than keeping your site(s) safe. So we figured what better topic to dedicate a whole month on the blog to than WordPress security? With a juicy perk thrown in for good measure. 😉 No more WordPress security lectures! You know how important securing all your sites, themes, and plugins is. You’re well aware of the consequences …
Contact Form 7 Version 5.3.2 Patches Critical Vulnerability, Immediate Update Recommended
Contact Form 7 has patched a critical file upload vulnerability in version 5.3.2, released today by plugin author Takayuki Miyoshi. The plugin is installed on more than five million WordPress sites. “An unrestricted file upload vulnerability has been found in Contact Form 7 5.3.1 and older versions,” Miyoshi said. “Utilizing this vulnerability, a form submitter can bypass Contact Form 7’s …
Smush Pro Now Supports Local WebP Conversion (No CDN Required)
Until now, next-gen WebP images could only be served by activating Smush Pro’s CDN. But by popular demand, Smush Pro now also supports local WebP image conversion. Our CDN is awesome, it really is. However, we’re all for giving people options. This is exactly why we’ve now made it possible to convert your images to WebP format without needing to …
Easy WP SMTP 1.4.3 Patches Sensitive Data Disclosure Vulnerability
Easy WP SMTP has patched a vulnerability that allows attackers to capture the password reset link from the plugin’s debug log file and gain unauthorized access to the site. The plugin is used by more than 500,000 WordPress sites to configure and send all outgoing emails via a SMTP server so they are less likely to end up in recipients’ …