BackWPup <= 4.0.2 – Plaintext Storage of Backup Destination Password

The BackWPup plugin for WordPress is vulnerable to Plaintext Storage of Backup Destination Password in all versions up to, and including, 4.0.2. This is due to to the plugin improperly storing backup destination passwords in plaintext. This makes it possible for authenticated attackers, with administrator-level access, to retrieve the password from the password input field […]

Read more »

The Block Bindings API Brings Dynamic Data to Blocks

WordPress 6.5 will introduce the Block Bindings API, laying the foundation for connecting blocks with data from custom fields and more.

Read more »

A WordPress ‘Firehose’ Allows AI Companies to Buy Access to a Million Posts a Day

This firehose appears to be distinct from any direct data sharing deal with Midjourney and OpenAI, in part because the documentation makes clear that data being sold via this firehose is not limited only to posts on WordPress.com, but also can include posts on self-hosted WordPress.org websites that use Jetpack.

Read more »

Cleaning up WordPress option clutter

If you run a WordPress site for a while, it’ll become cluttered. You’ve installed and uninstalled dozens of plugins over the course of your site being alive, and many of those plugins have left their footprint (their options) in your database. I’ve come up with a solution for this, which is the first step of […]

Read more »

A Decade of MainWP: Celebrating Version 5 and Our 10-Year Journey

Hey everyone, Dennis with MainWP here. Can you believe it’s been 10 years since we started this adventure? Time flies when you’re having fun, and today, I’m

Read more »

Does WordPress Gutenberg Editor Require a Fix for the Call-to-Action Button Block?

In the past at DigitalA11Y blog, we discussed the Links vs. Buttons conundrum and outlined the accessibility challenges. During a discussion with our design

Read more »

An introduction to block-based mega menus

In this tutorial, we’ll explore how to build a Mega Menu block that integrates with the Core Navigation block using new features coming in WordPress 6.5.

Read more »

Delicious Brain Bytes: DE{CODE} Registration Open, Plugin Madness, and Running Doom on Bacteria

In this issue of Delicious Brain Bytes, we open the doors on DE{CODE} 2024, look into the “sustainability crisis” in open source, and much more. Registration Open for DE{CODE} 2024… Read more

Read more »

Automattic WordPress.com and AI

I first saw the news from 404media that Automattic was going to start selling user content to AI companies looking for data. As with most media companies, 404 failed to make the distinction between Automattic/WordPress.com and WordPress.org the open source software. Then I read this post about protecting user choice from Automattic which is big […]

Read more »

Plugins: Not Your Circus, Not Your Gold Mine

Let it go! Let it go! Someone else’s fuck ups with a plugin are not your responsibility!

Read more »

How to Add a Language Switcher to Your WordPress Website?

Want to learn how to add a language switcher to your WordPress site? You’ve come to the right place. A language switcher (or language selector) is your website’s multilingual navigator, allowing visitors to effortlessly explore content in different languages. It empowers your international audience to be able to select their preferred language when they are […]

Read more »

WP 6.5 Beta 3, Help Test • AVIF Support • WC Asia Contributor Day • Contributor Covenant • Overlapping Problems in the Site Editor • Post Status

This Week at WordPress.org (February 5, 2024) News WordPress 6.5 Beta 3 Zip uploads not working from Finder/Nautilus/Gnome/etc in WP 6.4.3 Workarounds and

Read more »

Data Liberation: Meet WordPress.org’s Ambitious Plan for 2024

The open web is under threat. WordPress.org wants to protect it

Read more »

You Don’t Need to Know Code to Build a Successful WP Plugin Business

Discover how small WordPress plugin creators are outsmarting industry giants, turning niche solutions into lucrative businesses through innovation, smart marketing, and unwavering perseverance.

Read more »

What’s Coming in WordPress 6.5 (Features and Screenshots)

WordPress 6.5 beta is out with new features and improvements. Here is a list of all the features coming in WordPress 6.5 with screenshots and details.

Read more »

WooCommerce 8.7 Beta: Receipt Rendering Engine & More

We’re excited to announce that the latest WooCommerce Beta release is now available for testing. You can download it directly from WordPress.org or install it via the WooCommerce Beta Tester Plugin. Known Issue We are aware of a PHP Fatal with the Germanized extension: PHP Fatal error: Uncaught Exception: The LegacyProxy class is not intended for getting instances of […]

Read more »

Do WordPress’ Annual Survey Results Reflect Reality in 2024?

Our thoughts on SEJ’s coverage of the WordPress annual survey. Unravel the truth behind user frustrations and the path forward for WordPress.

Read more »

WordPress Photo Festival 2024, A Five Part Retrospective, Part 3, Attendees

In this episode of the International WPPhotos event we talk to attendees from three different continents about their various experiences.

Read more »

Automattic Faces Scrutiny Over AI Access Policy

Automattic makes the argument that AI regulation and legislation do not yet exist and, as such, is taking these steps to proactively provide users with additional methods of controlling how and where their content is made available.

Read more »

Joosts and Mariekes

When working at Yoast with my husband, Joost de Valk, I often divide customers into the Joosts and the Mariekes. The Joosts were like my Joost: technically skilled, wanting to know everything about a product, quickly bored, always looking for new things, and very early adopters. The Mariekes were more like me: a bit lazy, […]

Read more »

‘Support Inclusion in Tech’ is Fundraising to Sponsor More Marginalized WordPress Contributors

Support Inclusion in Tech (SiNC) is now fundraising on the Open Collective (OC) Foundation’s platform. Spearheaded by Winstina Hughes, SiNC assists underrepresented WordPress contributors and provides financial support to WordCamp speakers for travel and hotels.

Read more »

Omnisend’s omnipresence in the WordPress space

What can we learn from Omnisend’s strategy to appear in every corner of the WordPress ecosystem?

Read more »

WordPress Photo Festival 2024, A Five Part Retrospective, Part 2, Volunteers

The second of a five part series looking at the International WPPhotos event that happened in early February, 2024. We’ll be talking with some volunteers.

Read more »

Protecting User Choice

AI is rapidly transforming nearly every aspect of our world, including the way we create and consume content. At Automattic, we’ve always believed in a free and open web and individual choice. Like other tech companies, we’re closely following these advancements, including how to work with AI companies in a way that respects our users’ […]

Read more »

Tumblr and WordPress to Sell Users’ Data to Train AI Tools

Internal documents obtained by 404 Media show that Tumblr staff compiled users’ data as part of a deal with Midjourney and OpenAI.

Read more »

WordPress 6.5 Beta 3

WordPress 6.5 Beta 3 is now ready for download and testing! This version of the WordPress software is under development. Please do not install, run, or test this version of WordPress on production …

Read more »

Connect with the GitHub Outreach group to request feedback or further testing

During the Hallway Hangout: What’s next to the outreach program, the idea came up to create a GitHub group called “outreach” that can be pinged when a PR, a discussion, or an issue needs some further input from the outreach group. Sometimes developer or designers would like a few more voices to chime in on […]

Read more »

FSE Outreach Experimental Loses Two Words, Gains New Life

Sometimes success means having to say goodbye. That’s sort of what happened to the FSE Outreach Program, newly launched as plain Outreach. The longtime facilitator of this initiative, Automattic Product Wrangler Anne McCarthy, announced the upcoming changes in September 2023:

Read more »

The Times and Sunday Times Use WordPress

The Times is nearly 250 years old and is one of the most famous newspapers in the UK. They use WordPress for their publishing platform.

Read more »

New Free Plugin: Gravity Forms Code Chest

Code Chest makes custom code in Gravity Forms easy. It outputs form-specific code where it needs to be and executes it when it needs to run. 

Read more »

Membership Pricing Models: 8 Pricing Strategies For Membership Sites

Understand the different Membership Pricing Models & create a pricing strategy that supports your marketing strategy.

Read more »

If you are new to e-commerce, choose WooCommerce

When you start selling online, you usually haven’t defined all the details of your products or services. Start safe and spend your money on WordPress.

Read more »

Plugin: Auto-sizes for Lazy-loaded Images

Adds support for automatically calculating the sizes attribute for lazy-loaded images.

Read more »

WordPress Photo Festival 2024, A Five Part Retrospective, Part 1, Organizers

The first of a five part series looking at the International WPPhotos event that happened in early February, 2024.

Read more »

How to Create & Manage Block Patterns in WordPress

WordPress block patterns are among its most versatile design features. They provide readymade layouts for all manner of uses. And it seems like there is no end to their possibilities. Want to add a pricing table? Check. How about a custom photo gallery? Check. What if you’d like an entire About Us page? Check. We’re […]

Read more »

Yoast SEO 22.1: AI update and better language support

Yoast SEO 22.1 update brings significant advancements in generative AI features. Enhance your website with more accurate meta descriptions and titles.

Read more »

Experimenting with block-based mega menus

Experimenting with custom mega menus using the Interactivity API and functionality coming in WordPress 6.5.

Read more »

Focusing contribution on the Default Theme Task Force

Back in December last year, there was a proposal for a task force focusing on the default themes. This came from discussions at the Community Summit titled ‘“Improving the maintenance of older default themes’. This was a great discussion that went in many directions, the key point was in order to progress we need to […]

Read more »

The 40 Hour Work Week Is Sapping Your Best Employees. There’s A Better Way.

For many people (myself included), 40 hours a day is too much. I believe that we’re long overdue to shake up this work model, and using knowledge from my nearly 20 years in the workforce, both as an employee, and a business owner, I have come up with what I believe is a better way […]

Read more »

WPDeveloper Surprises Industry with Launch of Startise as Parent Company

Pioneering a new era of innovation as the dynamic parent company of WPDeveloper & other brands, Startise is ready to revolutionize the entrepreneurial landscape!

Read more »

Block Bindings, Layouts, Font Library, Mega Menus and more

Howdy, Next week, I’ll be heading out to Taipei, ahead of WordCamp Asia, to acclimate and do some sightseeing. If you are in the area, you can double-check my calendar so we can meet. Getting meeting times and places sorted ahead of time, makes it more likely that the conversations will happen, and not just…

Read more »

Recap Hallway Hangout: What’s next for the outreach program?

A group of contributors came together to discuss the Proposal: What’s next for the Outreach program. Participants were @fabiankaegy @ndiego @greenshady, @poena and @bph (facilitator). We recorded t…

Read more »

Proposal: Host 3rd-Party Blocks in Gutenberg’s GitHub Repository

Matias Ventura, Gutenberg’s Lead Architect, recently made a pitch to incorporate some 3rd-party blocks in the Gutenberg GitHub repository: “There’s a growing subset of blocks that we may contemplate creating that are either more niche or—for various reasons—not necessarily an immediate fit for the bundled library in core. This would include blocks that have enough […]

Read more »

Understanding The Templating System in Faust.js

Understand basics of the integration in the WordPress template hierarchy with Faust.js for headless WordPress setups. Learn how to create and resolve templates using Faust.js for a dynamic JavaScript frontend application.

Read more »

Changes in the plugin business in the last 15 years

While I am doing the same thing as I was doing back then, the WordPress ecosystem has changed tremendously. In this post, I reflect on the two biggest changes in the WordPress plugin business.

Read more »

Paid Memberships Pro v3.0 Release Candidate: Ready for Developer-Supported Production Sites

We are excited to announce the transition from the beta phase to the release candidate (RC) phase for Paid Memberships Pro v3.0. This marks a significant milestone in our journey towards the final release of this major update, which has been in development for over two years. Packed with significant improvements to subscription management and […]

Read more »

Block Bindings and Custom Fields – an (almost) no-code example

With the upcoming release of version 6.5, WordPress will receive the first iteration of Block Bindings API, a way to bind content of blocks to data stored in custom fields. Custom fields have been around for a long time. What wasn’t available was a way for content creators / no-code site builders to read out…

Read more »

WooCommerce Releases 8.6 & 8.6.1

WooCommerce releases 8.6 and patch 8.6.1 with new features and enhancements for merchants and developers.

Read more »

Alan Fuller of Display Eventbrite Events Sharing His Story

Alan Fuller, founder of Display Eventbrite Events, integrating Eventbrite events to your site, talked about his life & advice to young entrepreneurs.

Read more »

Navigating the Nexus: A Chronicle of Recent WordPress Acquisitions

Over the past four months, some exciting developments have been bustling in the dynamic mergers and acquisitions arena of WordPress. To catch everyone up let’s grab a beverage of choice and take a stroll down the calendar of memories.

Read more »

Adding WordPress to adopters of the Contributor Covenant

The WordPress open source project adopted its Community Code of Conduct in mid-2022. The Code of Conduct was forked from the Contributor Covenant, a template commonly used in many open source communities. Recently, WordPress contributors noticed that WordPress was not listed on the list of Adopters of the Contributor Covenant! To remedy this, a pull […]

Read more »

How I Restored Order to Chaos

One of the products I was helping with had a knowledge base full of documentation and other useful information for users. I was assigned to produce screencasts once a week for these KB articles, using them as a script. I … Read More

Read more »

How WordPress Has Changed My Life

Gobinda Tarafdar from Dhaka, Bangladesh, writes about how WordPress entered his life and sent him in an entirely new direction.

Read more »

How I Built It: Post Title Paragraph Option

The WordPress post title block doesn’t have a paragraph option. Here’s how I was able to make it an option in the Crosswinds Blocks plugin.

Read more »

The Future of Documentation: Best Practices for WordPress Sites in 2024

Best practices for shaping the future of documentation on WordPress sites. Discover the latest trends, and techniques to make your documentation standout.

Read more »

Clearing Up the Confusion Surrounding Block Themes

There’s been much discussion about the contrasts between Gutenberg and page builders. It has once again become a hot topic within the WordPress community. However, it seems like we’re missing something. Block themes should also be a part of this debate. If anything, they serve as a gateway to the…

Read more »

The Johnny Appleseed of WordPress

At my last job, I was often asked What do you like doing here? What career path do you want to pursue? These questions were asked shortly after I was hired, and I haven’t had an answer until now. It turns out that I enjoyed planting seeds. Here’s an example. This past Sunday, I reached […]

Read more »

Introducing Block Bindings, part 1: connecting custom fields

The first tutorial in a two-part series that introduces the Block Bindings API in WordPress 6.5. Part 1 focuses on custom fields.

Read more »

A Week in Core – February 19, 2024

Welcome back to a new issue of Week in Core. Let’s take a look at what changed on Trac between February 12 and February 19, 2024. 23 commits 43 contributors 81 tickets created 13 tickets reopened 8…

Read more »

What I learned by organizing the first Bogotá Photo Walk event

The idea was to invite people interested in photography, from newbies to pros, to meet casually in a beautiful big park to contribute to the WordPress Photo Directory.

Read more »

WooWeekly #483: No Images | Order Again | CRM Integrations

Hello there, Welcome back to WooWeekly, your weekly appointment with WooCommerce tutorials, tips and updates handpicked for you (and the other 18,705 subscribers), so that you can learn something new. The flu has decided to take a break. Fingers crossed for continued good health! – Gemini. The flu has opted for a hiatus. Let’s hope for ongoing wellness! […]

Read more »

Community Roundup Week Ending February 16

WordPress Community News: hot takes, upcoming events, quick links, and our meetup info. Got a tip? Message Michelle!

Read more »

WP Tavern Launches Writer Hunger Games

Seven folx from the WordPress Community have been selected as finalists for two positions as writers for the Tavern. May the odds be ever in your favor.

Read more »

WordPress 6.5 Beta 2

WordPress 6.5 Beta 2 is now ready for download and testing! This version of the WordPress software is under development. Please do not install, run, or test this version of WordPress on production …

Read more »

Adding and using grid support in WordPress themes

How to enable the Grid variation in your WordPress themes to give you more powerful control over the layout.

Read more »

WooCommerce 8.6.1: Fixes to issues introduced in 8.6.0

Hi there! We are pleased to announce the release of WooCommerce 8.6.1. This release should be backwards compatible with the previous version. What’s new in 8.6.1? This release includes these fixes …

Read more »

Discussion: Bringing accessibility-first approaches into content development

At WordCamp US 2023, @jominney, @newcomer22 and team published the Training Team Accessibility Checklist 🎉 I’ve recently been considering how we can bring accessibility-first approaches into …

Read more »

Freenginx’s Stand Against Corporate Limits: Potentially A New Era for WordPress Hosting

In a recent development within the world of web servers, the highly regarded service Nginx has undergone a significant transformation. Russian developer Maxim Dounin has made waves by announcing a new fork of the Nginx web server and caching proxy. The new fork is called freenginx. This move is strategically aimed at steering clear of […]

Read more »

Interactivity API Prepares for its Official Debut in WordPress 6.5

The Interactivity API is merging into WordPress 6.5. It revolutionizes site interactivity by standardizing the development of interactive elements. This makes it easier for developers and enhances user experiences. It enables dynamic interactions like shared data across blocks without reloading pages. This opens up new possibilities for developers, users and businesses alike. It could mark […]

Read more »

Look Who’s Back: jQuery 4.0.0 Is Now in BetaRonny Shani

Adherence to modern browser behavior and specs is a common thread in the announcement post. Indeed, browsers have come a long way since January 2006, when jQuery was launched, Internet Explorer had a 90% market share, and front-end development was a constant struggle. Today, with 99.84% browser support for ES6, a slew of well-supported Web […]

Read more »

Hackers exploit critical RCE flaw in Bricks WordPress site builder

Hackers are actively exploiting a critical remote code execution (RCE) flaw impacting the Brick Builder Theme to run malicious PHP code on vulnerable sites.

Read more »

Data Liberation Next Steps

The recently published announcement of the Data Liberation initiative started some great conversations, and this follow-up post aims to provide additional direction. As a start, I’d like to draw on a few things Matt mentioned in the original announcement.

Read more »

Merge Announcement: Interactivity API

View the kickoff post, the status update post, and the Trac ticket for the Interactivity API. Purpose & Goals Currently, plugin authors implement their chosen JavaScript frameworks (or vanilla …

Read more »

How to disable specific blocks in WordPress

Have you ever wanted to disable specific blocks in WordPress? Whether to simplify the editing experience, maintain consistency across a site, or any other reason, this article will guide you throug…

Read more »

EU Regulatory Success Prompts Open-Source CMS Leaders to Form Alliance

The regulatory landscape that the WordPress community finds itself in today is vastly different from where we’ve been. Governments are accelerating their regulatory oversight of technology and introducing new legislation regularly to try and catch up with the pace of innovation. In Europe recently we’ve seen two landmark pieces of legislation, the Digital Markets Act […]

Read more »

WooCommerce 8.6: Updated Fix Release Details

Following our earlier advisory, we’re providing an update on the upcoming fixes for WooCommerce 8.6, specifically concerning the Checkout and Product pages, and integration with Woo Subscript…

Read more »

LearnDash 4.11.0 Introduces A New Way to Generate Revenue

Disclaimer: LearnDash is a StellarWP Product, and I am a StellarWP Employee. LearnDash released 4.11.0 the other day, which includes the ability to assign and design a Course Completion page. Now, you might be wondering why this is noteworthy. Previously, … Read More

Read more »

GatherPress, Bringing Open Source to Organizing WordPress Events

The GatherPress plugin has been proposed to replace Meetup.com to help organize WordPress events through an open source solution.

Read more »

How to Take Great Ideas in WordPress and Run With It – With Kevin Geary

Rob Cairns sits down and talks to Kevin Geary.Show Highlights: 1. Kevin’s WordPress origin story. 2. How do we take great ideas and go with them. 3. Page Builders vs Blocks.

Read more »

WooCommerce’s Web API: We want to hear from you!

We’re looking to gather feedback from folks using the WooCommerce Web API to build tools, extensions, and more!  As you may know, WooCommerce ships with several server-side web APIs, collectiv…

Read more »

A Beginner’s Guide to SSH for WordPress Users

New Sysadmin? Learn how to log into a live server using SSH (Secure Shell) so you can examine logs, modify configuration files, diagnose performance problems, update software, and lots more.

Read more »

Bricks 1.9.6.1 Patches Critical RCE Vulnerability

The vulnerability impacts all versions of Bricks Builder before version 1.9.6.1. Identified as a Remote Code Execution (RCE) flaw, it poses a critical security risk, allowing attackers to potential…

Read more »

How to redirect WordPress images to a different domain (with htaccess)

How to redirect images to a different domain with 2 htaccess lines

Read more »

Business Roundup Week Ending February 16

The Content Marketing Apocalypse, Facebook Ads Carrying Malware, Google Gemini AI Replaces Bard, and More!

Read more »

Overlapping Problems

Since I’m no longer running the FSE Outreach Program and it’s moving to better days in a new evolution, I sometimes find myself with swirling thoughts and no solid avenue to share. A post on Make Core would be too serious yet keeping it to myself feels unhelpful. All of this is to say, here […]

Read more »

Why Bluehost is Betting Big on Transforming the WordPress Experience

Host Matt Medeiros interviews Brent Lundell, an IT innovator at Bluehost, about optimizing WordPress performance and scaling on Bluehost’s infrastructure. They dive into the challenges of supporting a diverse WordPress landscape, from outdated plugins to complex WooCommerce stores. “I came through those days and it wasn’t our best period. We’re better now and we’ve really […]

Read more »

How to Set Up WordPress As A Headless CMS

Headless WordPress is a website or omnichannel app that uses WordPress content, delivered by the REST API or GraphQL to frontends developed outside WordPress (e.g., Next.js, Nuxt.js, React, Vue). Before […]

Read more »

Remote Code Execution – Cwicly

The Cwicly page builder is vulnerable to remote code execution (RCE) in versions

Read more »

WP 6.5 Beta 1, Help Test • WP-CLI 2.10.0 • 2023 Annual Survey Findings • Proposal Core Blocks in Directory • Plugin Dependencies • NGINX Forked

This Week at WordPress.org (February 5, 2024) News 2023 Annual Survey Results and Next Steps WP-CLI v2.10.0 Release Notes Core NGINX Developer Forks Web

Read more »

Plugin Madness 2023 Nominations Open

We need your help to nominate plugins for Plugin Madness 2023! Help us find the best of the best before voting starts.

Read more »

Building dynamic block-based attachment templates in themes

How to use block filters to dynamically customize image, video, and audio attachment pages in WordPress.

Read more »

AI 0.2 Release: Teaching AI to be True to Your Brand and Other AI Enhancements

Welcome to the next phase of our AI product evolution as we roll out AI release 0.2, packed with massive enhancements tailored to elevate your AI and web creation experience. This release is all about aligning with technology and keeping on improving the user experience and the existing capabilities.

Read more »

Block Party: Exploring Interactive WordPress Blocks

Modern-day WordPress websites use an arrangement of blocks to organize and display content on a page. Some blocks come with the WordPress install, but others are custom-made by third parties. Some of these WordPress blocks are interactive. Interactive WordPress blocks refer to blocks that enable user interaction or engagement directly within the content. These blocks […]

Read more »

Project Thread: Documentation Redesign

In early 2023, the Documentation site, also known as HelpHub, underwent a redesign and transitioned to a block theme. You can learn more about this project in the original kick-off and launch posts…

Read more »

Submitting WordPress plugins and plugin updates

Having recently launched our first WordPress plugin, the Admin Country Allowlist, I thought it would be useful to collate my notes into a tutorial explaining the process of both submitting a viable plugin, and actually maintaining it moving forwards. The WordPress review team are very thorough in their process so it’s good to know what […]

Read more »
To top