Security/ReviewProcess: Difference between revisions

Line 108: Line 108:
==WordPress Plugin Review Process==
==WordPress Plugin Review Process==
Before being installed, all WordPress plugins must be reviewed by the security team. These reviews are simpler than full site reviews and ensure that the plugin being installed does not compromise the security of the blog/site.
Before being installed, all WordPress plugins must be reviewed by the security team. These reviews are simpler than full site reviews and ensure that the plugin being installed does not compromise the security of the blog/site.
See the WebAppSec link for additional information about WordPress: https://wiki.mozilla.org/WebAppSec/Wordpress_Security_Review_Process


===Common Attack Vectors===
===Common Attack Vectors===
24

edits