Page 7 of 12 FirstFirst ... 56789 ... LastLast
Results 61 to 70 of 118

Thread: My plugin removed from WP.org extend directory

  1. #61
    Ryan's Avatar
    Ryan is offline WordPress Legend
    Join Date
    Jan 2009
    Location
    New Zealand
    Posts
    2,801

    Default

    Quote Originally Posted by FolioVision View Post
    Strangely SemperFi All in One has still not been updated and is still available!
    Are you sure? I looked at it the other week and it did appear to have been updated. Or did I get that wrong?

  2. #62
    FolioVision's Avatar
    FolioVision is offline Hello World
    Join Date
    Jan 2010
    Location
    Vienna/Bratislava
    Posts
    4

    Default

    Hello Ryan,

    when you look at

    http://wordpress.org/extend/plugins/...-one-seo-pack/

    you will see the last update:

    "Last Updated: 2009-12-20"

    This thread started in january, so it does not look to be updated.

  3. #63
    Ryan's Avatar
    Ryan is offline WordPress Legend
    Join Date
    Jan 2009
    Location
    New Zealand
    Posts
    2,801

    Default

    Oh, well that's just weird. I thought I saw code changes in there the other week. I must have imagined it :p

  4. #64
    Jeffro's Avatar
    Jeffro is offline WPTavern Forum Admin
    Join Date
    Jan 2009
    Location
    Ohio
    Posts
    2,359

    Default

    I have no idea why that would be. A bit long for a security update to not transfer through. Maybe that data is old? Or, he just updated the commercial version and that's it?

  5. #65
    chipbennett's Avatar
    chipbennett is offline WordPress Legend
    Join Date
    Feb 2009
    Location
    St. Louis, MO
    Posts
    1,997

    Default

    Quote Originally Posted by Jeffro View Post
    I have no idea why that would be. A bit long for a security update to not transfer through. Maybe that data is old? Or, he just updated the commercial version and that's it?
    And surprisingly, it's not yet been yanked from the repository...

    /sarcasm
    WP TurnKey - Turn-Key WordPress installation and maintenance services
    WordPress user since 2005 | @chip_bennett | chipbennett.net | cbnet Plugins

  6. #66
    Cais's Avatar
    Cais is offline Big Tipper
    Join Date
    Feb 2009
    Location
    Mississauga, ON, CANADA
    Posts
    349

    Default

    As of a few seconds ago ...
    All in One SEO Pack Downloaded 4,370,000 times
    It might be a bit embarrassing for WordPress to pull the single most downloaded plugin ... which even more so strikes as an "old boys network"

  7. #67
    andreasnrb's Avatar
    andreasnrb is offline Kegger
    Join Date
    Jun 2009
    Posts
    595

    Default

    It would reflect badly if the most downloaded plugin was yanked due to security problems.
    Also means that no programmer has ever looked at the code =).

  8. #68
    chipbennett's Avatar
    chipbennett is offline WordPress Legend
    Join Date
    Feb 2009
    Location
    St. Louis, MO
    Posts
    1,997

    Default

    Quote Originally Posted by JellyBeen View Post
    As of a few seconds ago ...
    All in One SEO Pack Downloaded 4,370,000 times
    It might be a bit embarrassing for WordPress to pull the single most downloaded plugin ... which even more so strikes as an "old boys network"
    I'm positive that's the reason that AIOSEO was not treated in the same manner as its less-popular fork.

    The reasoning, of course, is exactly backwards:

    The overall risk of an extremely minor fork that exposes, let's say, a few hundred WordPress users to the alleged vulnerability is miniscule compared to the overall risk of AIOSEO, which exposes over four million WordPress users to the alleged vulnerability.

    Yet, it was the miniscule-risk plugin that was yanked, and the massively popular (and thus, massive-risk) plugin was left completely alone.
    WP TurnKey - Turn-Key WordPress installation and maintenance services
    WordPress user since 2005 | @chip_bennett | chipbennett.net | cbnet Plugins

  9. #69
    andrea_r's Avatar
    andrea_r is offline WordPress Rockstar
    Join Date
    Jan 2009
    Location
    Eastern Canada
    Posts
    1,325

    Default

    Granted I've only been skimming this issues, but I was under the impression that the minor fork had actually removed a pile of security checks that were in the original , and that was why it was yanked.

  10. #70
    andreasnrb's Avatar
    andreasnrb is offline Kegger
    Join Date
    Jun 2009
    Posts
    595

    Default

    Quote Originally Posted by andrea_r View Post
    Granted I've only been skimming this issues, but I was under the impression that the minor fork had actually removed a pile of security checks that were in the original , and that was why it was yanked.
    Nah the problematic code was never called. It was just a function he hadn't removed yet. Then there was a lack of esc_ use but thats the case with like all plugins known to man that isn't written by Mark J ;).

Page 7 of 12 FirstFirst ... 56789 ... LastLast

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •