News

  • WordPress 6.3 Makes the “Edit Site” Link Open the Current Template

    WordPress 6.3 Makes the “Edit Site” Link Open the Current Template

    WordPress 6.3 will make site editing several clicks faster for users who are moving from the frontend to edit the corresponding template. When you click the “Edit Site” link in the admin bar from a category page, for example, you currently get dumped out into the Site Editor on the home page. From here it’s…

  • MalCare, Blogvault, and WPRemote Plugins Patch Vulnerabilities Allowing Site Takeover Through Stolen API Credentials

    MalCare, Blogvault, and WPRemote Plugins Patch Vulnerabilities Allowing Site Takeover Through Stolen API Credentials

     Snicco, a WordPress security services provider, has published an advisory on a vulnerability in the MalCare plugin, which is active on more than 300,000 sites. “MalCare uses broken cryptography to authenticate API requests from its remote servers to connected WordPress sites,” WordPress security researcher Calvin Alkan said. “Requests are authentication by comparing a shared secret stored…

  • WordPress to Host 6.3 Live Product Demo on Thursday, July 20

    WordPress to Host 6.3 Live Product Demo on Thursday, July 20

    WordPress 6.3 is scheduled to be released one month from today on August 8, 2023. The live product demo date and time has now been set for Thursday, July 20, at at 16:00 UTC. Participants can join live via this Zoom link. Automattic-sponsored Gutenberg contributors Anne McCarthy and Rich Tabor will be hosting the event, moderated by Nathan…

  • Hey: An Elegantly Simple WordPress Block Theme for Blogging

    Hey: An Elegantly Simple WordPress Block Theme for Blogging

    Hey is a block theme designed by Automattic for users on WordPress.com and also released for free in the WordPress.org Themes Directory. It’s the kind of simple theme that enables you to quickly get started writing online, without having to configure a bunch of design elements. The homepage features a profile image (Site Logo), site…

  • WordPress 6.3 to Drop Support for PHP 5

    WordPress 6.3 to Drop Support for PHP 5

    WordPress is officially dropping support for PHP 5 in the upcoming 6.3 release, which is expected on August 8. WordPress’ minimum supported version has sat at PHP 5.6.20 since 2019, but will be updated to 7.0.0 in the next release. The recommended PHP version will stay the same at 7.4+. “The minimum supported version was last…

  • WordPress 6.3 Beta 3 Released, Introduces UI Changes to Pattern Management

    WordPress 6.3 Beta 3 Released, Introduces UI Changes to Pattern Management

    WordPress contributors are onto another round of testing, as 6.3 Beta 3 was released this week. RC 1 is expected on July 18, and a live product demo is anticipated to be broadcast on Thursday, July 20, 2023 at 16:00 UTC. These demos have become a more regular part of the release process and allow…

  • WordCamp Dhaka 2023 Cancelled Due to Concerns of Corporate Influence on Community Decision-Making

    WordCamp Dhaka 2023 Cancelled Due to Concerns of Corporate Influence on Community Decision-Making

    WordCamp Dhaka (Bangladesh) 2023 has been cancelled by The WordPress Community Team due to concerns of corporate influence on the community decision-making process. The camp was scheduled for August 5, and organizers had already secured a venue and progressed on moving the camp forward. The Community Team published a statement on the event’s website, which…

  • Ultimate Member 2.6.7 Patches Privilege Escalation Vulnerability

    Ultimate Member 2.6.7 Patches Privilege Escalation Vulnerability

    Authors of the Ultimate Member plugin have released version 2.6.7 with a patch for a privilege escalation vulnerability. Last week WPScan reported that Ultimate Member had still not fully patched the vulnerability after multiple inadequate attempts. There was evidence that it was being actively exploited in the wild. Working through the complexities of this security…

  • WordPress Plugin Review Team Adds 6 New Sponsored Volunteers, Opens Applications 

    WordPress Plugin Review Team Adds 6 New Sponsored Volunteers, Opens Applications 

    A new era has begun for WordPress.org’s Plugin Review Team. Mika Epstein, who has served for the past decade, is stepping down, but not before launching a new crew of volunteers. The team is responsible for approving newly submitted plugins, maintaining the Plugin Reviewer Handbook, as well as investigating any reported security issues and guideline…

  • Hackers Actively Exploiting Unpatched Privilege Escalation Vulnerability in Ultimate Member Plugin

    Hackers Actively Exploiting Unpatched Privilege Escalation Vulnerability in Ultimate Member Plugin

    WPScan is reporting a hacking campaign actively exploiting an unpatched vulnerability in the Ultimate Member plugin, which allows unauthenticated attackers to create new user accounts with administrative privileges and take over the site. The vulnerability has been assigned a CVSSv3.1 (Common Vulnerability Scoring System) score of 9.8 (Critical). Automattic’s WP.cloud and Pressable.com hosting platforms picked…

  • WordPress 6.3 Beta 2 Released, Ready for Testing

    WordPress 6.3 Beta 2 Released, Ready for Testing

    WordPress 6.3 hit a major milestone today with the release of Beta 2. The release leads opted to skip Beta 1, which was delayed yesterday after some technical issues with packaging the release, and have moved straight on to Beta 2. As WordPress 6.3 is set to be the last major release of the Gutenberg…

  • WordCamp Asia 2024 Scheduled for March 7-9 in Taipei

    WordCamp Asia 2024 Scheduled for March 7-9 in Taipei

    WordCamp Asia has announced its dates for 2024. The flagship event is now officially scheduled for March 7-9, in Taipei, Taiwan. Organizers have secured the Taipei International Convention Center (TICC) venue to host the event, which is located in the business district not far from Taipei 101, formerly known as the Taipei World Financial Center, a…