photo credit: Night Moves – (license) There’s a lot of great WordPress content published in the community but not all of it is featured on the Tavern. This post is an assortment of items related to WordPress that caught my eye but didn’t make it into a full post. Bob Dunn Launches Theme and Plugin Roundups Bob Dunn, founder of …
WP Mobile Detector Plugin Patched for Arbitrary File Upload Vulnerability, Exploits Ongoing
Researchers at Sucuri are reporting that the WP Mobile Detector plugin has been patched for an arbitrary file upload vulnerability that is being actively exploited in the wild. The plugin, which was temporarily removed from the WordPress Plugin Directory, had more than 10,000 active installs before the exploits began. According to Sucuri, the majority of compromised sites have been infected …
WordPress for Android 5.4 Adds Gravatar Updating and New Smart Lock Feature
WordPress for Android version 5.4 was released this week with a couple of exciting new features and the eagerly anticipated new visual editor. The editor received a complete rewrite to use WebView, which allows the app to render and edit HTML via ContentEditable. The app’s developers had to work around a few bugs with WebView in order to make the …
WordCamp Europe to Offer Free Live Streaming for All Sessions
WordCamp Europe 2016 is sold out as of last week. With 2200 people expected to attend, it will be the largest WordPress event in history. Attendees representing 68 different countries will gather in Vienna for two days of sessions and networking on June 24-25th. Those unable to attend the event can now sign up for a free live streaming ticket …
Jetpack 4.0.3 Patches a Critical XSS Vulnerability
Jetpack 4.0.3 is a security release that contains an important fix for a critical vulnerability that has been present in the plugin since version 2.0, released in 2012. According to Jetpack team member Sam Hotchkiss, a stored XSS vulnerability was found in the way that some Jetpack shortcodes are processed, which allows an attacker to insert JavaScript into comments to …
In Case You Missed It – Issue 9
photo credit: Night Moves – (license) There’s a lot of great WordPress content published in the community but not all of it is featured on the Tavern. This post is an assortment of items related to WordPress that caught my eye but didn’t make it into a full post. Chris Lema Launches Beyond Good Chris Lema has launched a new …
WPWeekly Episode 235 – Interview with James Giroux Envato’s WordPress Evangelist
In this episode, Marcus Couch and I are joined by James Giroux, Envato’s WordPress evangelist. We discuss a number of topics including what he’s accomplished since taking over the position in January, the item support policy change, and author driven pricing. We also find out what his favorite part of the job is and what he enjoys most about his …
BuddyPress Launches Style Modules Trial Initiative
photo credit: Paintbrush – (license) BuddyPress core developer Hugo Ashmore announced a new trial initiative this week that aims to create a library of CSS and JavaScript snippets to help users customize their communities. The Style Modules project will aggregate community-submitted code that enhances BuddyPress components in a plug-and-play manner. Developers who want to contribute to the project can submit …
Take Granular Control of WordPress’ Update System with Easy Updates Manager
When WordPress 3.7 “Basie” was released in 2013, it brought automatic updates to the masses. By default, WordPress automatically updates to point releases. Using additional constants within wp-config.php, you can configure WordPress to automatically update themes, plugins, and major releases. If you want granular control over the WordPress update system without touching code, check out Easy Updates Manager. Easy Updates …
New Plugin Uses BuddyPress Email API to Send bbPress Forum Emails
BuddyPress 2.5, released in March, introduced customizable emails via a new BP Email API. This new feature allows community managers to easily edit BuddyPress-generated emails in the admin and make design changes in the customizer. It didn’t take long for developers to think of bringing this same customizability to bbPress emails. Brandon Allen has just released BP Emails for BBP, …