WordPress Core JavaScript Framework Selection Discussion Continues with Input from Open Source Community Leaders

WordPress’ #core-js Slack channel hosted a lively and productive meeting this morning led by Andrew Duthie. The discussion focused less on specific framework comparisons and more on the role a framework will play in building JavaScript-powered interfaces for WordPress. Contributors were joined by core developers and leaders from the React and Vue communities, Chrome engineers, and other interested parties from …

SI CAPTCHA Anti-Spam Plugin Permanently Removed from WordPress.org Due to Spam Code

The SI CAPTCHA Anti-Spam plugin has been removed from the WordPress Directory due to its author including spam code. The plugin added a CAPTCHA image test to WordPress forms to prevent spam and was compatible with forms generated by bbPress, BuddyPress, Jetpack, and WooCommerce. It had more than 300,000 active installs at the time of removal. Mike Challis, the original …

Scott Bolinger Shares Unique Perspective of WordPress From Outside the Bubble

Scott Bolinger, a product developer focused on the WordPress space who has created several products, including AppPresser and Holler Box, recently attended Content and Commerce Summit 2017. This conference focuses on what’s working in eCommerce, digital media, information publishing, and subscription commerce. According to Bolinger, WordPress and WooCommerce were not topics of discussion. “It really opened my eyes going to an …

DonateWC Reaches Fundraising Goal

DonateWC, an initiative focused on providing less fortunate people an opportunity to attend large WordCamps has reached its fundraising goal of 1,000€. Ines van Essen expressed gratitude and appreciation for the donations. “The responses and feedback that have come in during the past week have been overwhelming,” She said. “I can’t believe we can already move to legalizing things and …

WordPress 4.8.2 Patches Eight Security Vulnerabilities

WordPress 4.8.2 is available for download and users are encouraged to update as soon as possible. This release patches eight security vulnerabilities and has six maintenance related fixes. Hardening was also added to WordPress core to prevent plugins and themes from accidentally causing a vulnerability through $wpdb->prepare() which can create unexpected and unsafe queries leading to potential SQL injection (SQLi). …

Display Widgets Plugin Permanently Removed from WordPress.org Due to Malicious Code

Display Widgets, a plugin with more than 200,000 active installs, has been removed from WordPress.org due to its authors inserting malicious code. SEO consultant David Law was the first to bring this issue to the attention of the plugin team after discovering that Display Widgets was inserting content into sites from external servers and also collecting visitor data without permission. …