₦airaland Forum

Welcome, Guest: RegisterLoginWith GoogleTrendingRecentNew

Stats: 3,325,113 members, 8,420,425 topics. Date: Thursday, 04 June 2026 at 07:15 PM

Toggle theme

Wordpress Plugins Security. - Webmasters - Nairaland

Nairaland ForumScience/TechnologyWebmastersWordpress Plugins Security. (426 Views)

1 Reply

Wordpress Plugins Security. by PGON(op): 9:43pm On Dec 15, 2015
WordPress is on top of the list of most popular CMS, because of the powerful community around it. Most of the look and Core WordPress functions can be altered by plugins developed by the community. The plugins makes WordPress powerful and easily adaptable to a particular purpose.

Observation

I checked five free wordpress plugins and found that there is no index file in the directories within the plugin. There could be a lot more like this.

Security Concern

Most of the web servers out there will certainly index the files within these directories and this is not good security-wise.

Recommendation To wordpress .org

Add it to the requirement for plugin submission
All directories within the plugin should have index.php file.

Recommendation to plugin users / developers

Once you download a wordpress plugin, extract it, check for index.php /index.html file within all the directories of the plugin.
If there is none, you can create a new index.php or download this index.php (extract after download)file below and place it inside directories that do not have index.php/ index.html file.

Source
http://mrparagon.me/wordpress-plugins-security/
1 Reply

10 Brilliant Wordpress Plugins To Monetize Your BlogHow To Test Wordpress Plugins Without Installing ThemMy Top 5 Recommended Wordpress Plugins For New Bloggers234

Valentine Not For Real ChristiansNeed Help Oh...my Gmail Is Been Used In Another LocationAre You Planning On Starting A Blog Or You Alread Have One?