• Log in
  • Register

linkhut
Bookmarks
tagged with:
  • Security
  • wp
Sort by:
  • recency
  • popularity
Order:
  • descending
  • ascending

04 Aug 23

Escaping and securing Advanced Custom Fields output - Useful Snippets

https://snippets.khromov.se/sanitizing-and-securing-advanced-custom-fields-output/
by astratagem 2 years ago
Tags:
  • pain
  • wp:plugins:acf
  • security
  • under.the.rug
  • wp

Validating, sanitizing, and escaping

https://docs.wpvip.com/technical-references/security/validating-sanitizing-and-escaping/#always-escape-late
by astratagem 2 years ago
Tags:
  • best.practices
  • wp
  • security
  • forms
  • user.input
  • overview

Is sanitization required for front end form? - ACF Support

https://support.advancedcustomfields.com/forums/topic/is-sanitization-required-for-front-end-form/
by astratagem 2 years ago
Tags:
  • wp:plugins:acf
  • bullshit
  • under.the.rug
  • security
  • due.diligence
  • forms
  • discussion
  • wp

20 Mar 23

#21022 (Use bcrypt for password hashing; updating old hashes) – WordPress Trac

https://core.trac.wordpress.org/ticket/21022
by astratagem 2 years ago
Tags:
  • bullshit
  • wp:worst.of
  • security
  • vulnerabilities
  • backwards
  • wp

04 Mar 23

Headless WordPress Authentication with Native Cookies

https://developers.wpengine.com/blog/headless-wordpress-authentication-native-cookies
by astratagem 2 years ago
Tags:
  • walkthrough
  • security
  • authentication
  • authorization
  • wp
  • headless.cms
  • cors

#57809 (Application password success_url should allow http when host is localhost or localhost:port) – WordPress Trac

https://core.trac.wordpress.org/ticket/57809
by astratagem 2 years ago
Tags:
  • patch
  • wp:trac
  • auth
  • wp:application.passwords
  • local.dev
  • security
  • wp

Application Passwords: Integration Guide – Make WordPress Core

https://make.wordpress.org/core/2020/11/05/application-passwords-integration-guide/
by astratagem 2 years ago
Tags:
  • auth
  • wp
  • security
  • overview
  • announcement
  • wp:application.passwords

27 Feb 23

SVG uploads in WordPress (the Inconvenient Truth)

https://www.bjornjohansen.com/svg-in-wordpress
by astratagem 2 years ago
Tags:
  • svg
  • security
  • security:xss
  • wp

17 Feb 23

Security Functions - Engineering Handbook

https://engineering.hmn.md/guides/wordpress/security-functions/
by astratagem 2 years ago
Tags:
  • wp
  • security
  • sanitization
  • user.input
  • best.practices
  • reference
  • agencies
  • php
  • validation
  • handbook

05 Oct 22

GitHub - carlalexander/passwords-evolved: WordPress password authentication for the modern era

https://github.com/carlalexander/passwords-evolved
by astratagem 3 years ago
Tags:
  • security
  • repo
  • wp
  • wp:plugins
  • authn

22 Sep 22

GitHub - 10up/safe-svg: Enable SVG uploads and sanitize them to stop XML/SVG vulnerabilities in your WordPress website.

https://github.com/10up/safe-svg
by astratagem 3 years ago
Tags:
  • security
  • repo
  • wp
  • svg
  • wp:plugins
  • wp:uploads

Tags
Sort by:
  • label
  • usage
Order:
  • ascending
  • descending
  • security
  • wp
  • under.the.rug
  • user.input
  • auth
  • best.practices
  • bullshit
  • forms
  • wp:application.passwords
  • wp:plugins
  • wp:plugins:acf
  • repo
  • overview
  • svg
  • php
  • reference
  • sanitization
  • security:xss
  • validation
  • vulnerabilities
  • walkthrough
  • wp:trac
  • wp:uploads
  • agencies
  • wp:worst.of
  • announcement
  • authentication
  • authn
  • authorization
  • backwards
  • cors
  • discussion
  • due.diligence
  • handbook
  • headless.cms
  • local.dev
  • pain
  • patch
Explore
  • Recent
  • Popular
RSS feed

linkhut is open source software. You can contribute and report issues on SourceHut at ~mlb/linkhut (v0.1.0)