WordPress Playground, an experimental project that uses WebAssembly (WASM) to run WordPress in the browser, was number 1 on Hacker News recently and was also featured on TechCrunch. Word is getting around about how easy it is to fire up a sandbox environment in just a few seconds for testing plugins and themes and even different versions of WordPress and PHP. …
Ollie Theme Previews New Onboarding Wizard in Development
Unless you are some kind of wizard with the block editor, starting a WordPress website from a blank slate can be overwhelming and ultimately defeating. Mike McAlister, maker of the free Ollie theme, is developing an onboarding experience that aims to drastically reduce the amount of time users spend setting up a new site. “I suspect we’re cutting out a …
#84 – Aaron Reimann on WordPress’ First Twenty Years
Transcript [00:00:00] Nathan Wrigley: Welcome to the Jukebox podcast from WP Tavern. My name is Nathan Wrigley. Jukebox is a podcast which is dedicated to all things WordPress. The people, the events, the plugins, the blocks, the themes, and in this case a history of WordPress’s important moments. If you’d like to subscribe to the podcast, you can do that …
Introducing New Ultra Smush: 5x Image Compression Boost With Minimal Quality Loss
WPMU DEV’s award-winning image optimization plugin’s new Ultra Smush unlocks unprecedented image compression levels up to 5x greater than Super Smush, while retaining impressive image quality! Is your WordPress site filled with images? Do you want those images to load on your pages faster than a lamborghini speeding on the Autobahn and compress them tighter than a full stack developer’s …
WordCamp US 2023 Contributor Day Signup Is Open
WordCamp US 2023 is happening next month in National Harbor, Maryland. The Contributor Day will kick off the event on Thursday, August 24, preceding the conference days. It is open to any attendee, including those who have never contributed before and seasoned contributors alike. There are many technical and non-technical ways to contribute to WordPress. Those who are not able …
WordPress 6.3 to Introduce a Development Mode
As the dev notes for the upcoming WordPress 6.3 release are rolling out, there are so many exciting features that have not yet been highlighted. The new development mode, initiated by declaring the WP_DEVELOPMENT_MODE constant, is one that will be particularly useful for theme developers initially. “The development mode configured on a site defines the kind of development work that the …
WordPress Plans Ambitious Admin UI Revamp with Design System, Galvanizing Broad Support from the Developer Community
WordPress’ admin is on deck for a long-awaited makeover after Gutenberg lead architect Matías Ventura published plans for a revamped admin design as part of the Phase 3: Collaboration road map. “As WordPress turns twenty years old, the overall aim of this work is to improve upon this experience at a foundational design level, giving plugins and users more control …
All-In-One Security Plugin Patches Sensitive Data Exposure Vulnerability in Version 5.2.0
All-In-One Security (AIOS), a plugin active on more than a million WordPress sites, was found to be logging plaintext passwords from login attempts in the database and has patched the security issue in version 5.2.0. In a post titled “Cleartext passwords written to aiowps_audit_log” published to the plugin’s support forum two weeks and five days ago, @c0ntr07 reported the issue: …
State of Digital Publishing to Host WordPress Publishers Performance Summit, July 27, 2023
The State of Digital Publishing, a startup market research publisher focused on digital media, is hosting an online event called WordPress Publishers Performance Summit (WPPS) on July 27, starting at 2PM EST. The organization’s mission is to help publishers develop sustainable business models through education, guides, online courses, and other resources. They have partnered with Multidots, a WordPress development agency …
MalCare, Blogvault, and WPRemote Plugins Patch Vulnerabilities Allowing Site Takeover Through Stolen API Credentials
Snicco, a WordPress security services provider, has published an advisory on a vulnerability in the MalCare plugin, which is active on more than 300,000 sites. “MalCare uses broken cryptography to authenticate API requests from its remote servers to connected WordPress sites,” WordPress security researcher Calvin Alkan said. “Requests are authentication by comparing a shared secret stored as plaintext in the WordPress …






