wp-json user enumeration disable
-
I don’t currently have REST API disabled using WordPress 4.7.4 because some developers are using the REST API for various reasons.
I like that you added the “Stop user enumeration” option. But it doesn’t block the wp-json user enumeration issue.
Is it possible to add that?
Example:
example.com/wp-json/wp/v2/users/These
Real World Example:
https://www.obama.org/wp-json/wp/v2/users/
https://www.angrybirds.com/wp-json/wp/v2/users/
Viewing 11 replies - 1 through 11 (of 11 total)
Viewing 11 replies - 1 through 11 (of 11 total)
- The topic ‘wp-json user enumeration disable’ is closed to new replies.