Disable Author Archive Redirection

描述

WordPress redirects /?author=(number) to /author/(userID) if the author id exists. This is the security vulnerability because an internet user might be able to know all User ID and the user name in a website using WordPress.

If you can control the configuration of a web server, you had better use the rewrite rule (Search as “Block Author URLs”) for reducing the system load of WordPress.

The plugin prevents the security vulnerability regarding the author archive redirection.

Detailed Behavior
1. It isn’t applied in the admin dashboard.
2. If “author” query in URL (QUERY_STRING) exists, displays 404 error.
3. If “/author/” in REQUEST_URI involves, redirects to the top page.
4. Apply to the “redirect_canonical” hook, too.

安装

The operation is the simple.
Please install this plugin and activate it.

评价

此插件暂无评价。

贡献者及开发者

「Disable Author Archive Redirection」是开源软件。 以下人员对此插件做出了贡献。

贡献者

「Disable Author Archive Redirection」插件已被翻译至 1 种本地化语言。 感谢所有译者为本插件所做的贡献。

帮助将「Disable Author Archive Redirection」翻译成简体中文。

对开发感兴趣吗?

您可以浏览代码,查看SVN仓库,或通过RSS订阅开发日志

更新日志

2.2.0

  • Tested up to WordPress 7.0.
  • Fixed WordPress.org Plugin Check errors and warnings.
  • Improved security checks for direct file access, nonce validation, and user capabilities.
  • Improved sanitization and escaping for admin and network admin settings screens.
  • Updated settings menu slugs to use stable plugin identifiers.
  • Added plugin-specific prefixes to internal globals and helper functions.
  • Removed manual translation loading for WordPress.org translation compatibility.

2.1.2

  • Tested up to WordPress 6.7.2.

2.1.1

  • Fixed a problem that the “include” folder had not been uploaded. If your site is not working due to the plugin, please remove the plugin via FTP and reinstall it again.
  • Tested up 6.5.2 with PHP 8.3.6

2.1

  • Fixed the problem with a warning message when using WP-CLI.

2.0

  • Supported the multisite.
  • Added the setting menu.
  • Tested up 5.6 with PHP 7.4
  • Tested up 5.8
  • Tested up 6.0

1.0

  • First Released.