Add /wp-json/wp/v2/users

Add /wp-json/wp/v2/users WP REST API endpoint which exposes sensitive information - list of all WP users, which could be used for brute-force attacks.
This commit is contained in:
Alexander Bridges
2018-10-31 23:27:00 +02:00
committed by GitHub
parent dbfa5e2b1e
commit a53dae2a76

View File

@@ -2330,6 +2330,7 @@
/wp-content/plugins/disqus-comment-system/disqus.php /wp-content/plugins/disqus-comment-system/disqus.php
/wp-content/plugins/google-sitemap-generator/sitemap-core.php /wp-content/plugins/google-sitemap-generator/sitemap-core.php
/wp-content/uploads/ /wp-content/uploads/
/wp-json/wp/v2/users
/wp-register.php /wp-register.php
/wp.php /wp.php
/wp.rar/ /wp.rar/