[wp-trac] [WordPress Trac] #63915: Make it possible to bookmark plugins in backend
WordPress Trac
noreply at wordpress.org
Sat Sep 20 02:40:19 UTC 2025
#63915: Make it possible to bookmark plugins in backend
-------------------------------+---------------------------------
Reporter: prestonwordsworth | Owner: (none)
Type: feature request | Status: closed
Priority: normal | Milestone:
Component: Plugins | Version: trunk
Severity: normal | Resolution: wontfix
Keywords: close | Focuses: ui, administration
-------------------------------+---------------------------------
Comment (by prestonwordsworth):
Replying to [comment:9 SirLouen]:
>
> You can always leave them not activated (I've done this always), it
poses a minor security risk if the plugin is poorly developed and it has
callable files, so you need to keep them update as any other plugin.
Yeah, makes sense to me. If most users are doing this (I did too) and
choose to accept the risk rather than try to address it, any proposal to
address the risk is by definition niche.
The only thing I’d add to this is that poorly developed plugins remain a
risk even when kept up to date, so the attack vector depends not so much
on the number of inactive vs active plugins (up to date or not) as on
their attention to security.
--
Ticket URL: <https://core.trac.wordpress.org/ticket/63915#comment:10>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform
More information about the wp-trac
mailing list