Kind of the old Windows vs Mac problem though. It gets so many exploits because it is so ridiculously popular. No one is going to bother looking for exploits in shit that no one uses right? I’m sure they’ve got problems like any project but I’m not convinced they’re THAT bad. Not to mention a lot of exploits you see are plugins doing dumb shit, not WP itself.
Comment on Tumblr to move its half a billion blogs to WordPress
fake@sh.itjust.works 2 months agoHas to rank as one of the most exploited pieces of software ever.
Definitely be not aided by the fact it’s targeting an audience without the skills or knowledge to adequately configure, maintain and monitor it. And the plugin community only makes the vulnerability exposure worse.
webhead@lemmy.world 2 months ago
sugar_in_your_tea@sh.itjust.works 2 months ago
Yup. I imagine a lot of users install a lot of plugins they don’t actually need, which just expands the attack surface.