资讯

Version 4.4 contains the "scaffolding" as Matthew Mullenweg, founding developer of WordPress put it in his own intro. To be sure, WordPress is not the first CMS to incorporate the REST API framework.
The WordPress Transient API is one of the most useful WordPress APIs, provided a quick and easy way to cache data that is expensive to generate.
Attackers have found a way to escalate the benign WordPress REST API flaw and use it to gain full access to a victim's server by installing a hidden backdoor.
The recently patched REST API Endpoint vulnerability in WordPress could be leveraged to pull off stored cross-site scripting attacks.