• Hi,

    I have 2 suggestions to improve the plugin

    – The result of captcha is on an hidden field. It’s too easy for sâm robots.

    -if I understand, the futur post ID is on an hidden field too. If you use a cache plugin like wp-supercache, ID is the same during the cache timer… and post can be overwritted… I thing hacker can inject ID to modify others posts… To protect, you can use wp_insert_post insteed of wp_update_post and no specify post ID

    Else thanks for the plugin, very usefull for me 🙂

    https://wordpress.org/plugins/djd-site-post/

  • The topic ‘Suggestions’ is closed to new replies.