|
#65051
|
$_REQUEST['term'] used unsanitized in user search query
|
rajeshcp
|
Networks and Sites
|
normal
|
normal
|
4
|
7.1
|
defect (bug)
|
has-patch
|
04/16/2026
|
|
#65048
|
wp_ajax_fetch_list(): Sanitize $_GET input before nonce construction
|
rajeshcp
|
Administration
|
normal
|
normal
|
3
|
Awaiting Review
|
defect (bug)
|
has-patch
|
04/20/2026
|
|
#65052
|
Nonce check order flaw in post-quickdraft-save
|
rajeshcp
|
Security
|
normal
|
normal
|
3
|
Awaiting Review
|
defect (bug)
|
has-patch
|
04/20/2026
|
|
#65054
|
$_GET['pagenow'] and $_GET['widget'] unsanitized in dashboard AJAX handler
|
rajeshcp
|
Security
|
normal
|
normal
|
2
|
Awaiting Review
|
defect (bug)
|
has-patch
|
04/21/2026
|
|
#55343
|
Add Tooltip to "Remember Me" (WP Login Form)
|
rajinsharwar
|
Login and Registration
|
normal
|
normal
|
4
|
7.1
|
enhancement
|
dev-feedback
|
04/14/2026
|
|
#57157
|
Reduce external resources for wp-login.php
|
rajinsharwar
|
Login and Registration
|
normal
|
normal
|
1
|
Future Release
|
enhancement
|
has-patch
|
02/26/2025
|
|
#64837
|
Disable pings/trackbacks for local, development, and staging environments
|
ramonopoly
|
Pings/Trackbacks
|
normal
|
normal
|
2
|
7.1
|
enhancement
|
has-patch
|
04/15/2026
|
|
#41876
|
Add inline help to Custom HTML widget
|
rcreators
|
Widgets
|
normal
|
normal
|
9
|
Future Release
|
defect (bug)
|
|
03/25/2025
|
|
#52399
|
Remove widget accessibility mode
|
rcreators
|
Widgets
|
normal
|
normal
|
4
|
Future Release
|
enhancement
|
|
12/09/2025
|
|
#45910
|
Improve and extend focus styles for Windows High Contrast mode
|
rcreators
|
Administration
|
normal
|
normal
|
3
|
Future Release
|
defect (bug)
|
has-patch
|
01/03/2025
|
|
#60549
|
"Site Upload Quota Space" should indicate network default and possibly site's current usage
|
realloc
|
Networks and Sites
|
normal
|
normal
|
4
|
7.1
|
enhancement
|
|
02/19/2026
|
|
#31029
|
Allow 0 columns in gallery settings
|
rhurling
|
Media
|
normal
|
normal
|
8
|
|
defect (bug)
|
has-patch
|
10/26/2022
|
|
#63943
|
Post Passwords over 255 are not controlled in Quick Edit, nor reported Server Level.
|
rishabhwp
|
Quick/Bulk Edit
|
normal
|
normal
|
2
|
Future Release
|
defect (bug)
|
has-patch
|
01/18/2026
|
|
#22377
|
Add filter to wp_update_plugins()
|
rmccue
|
Upgrade/Install
|
low
|
minor
|
9
|
|
enhancement
|
has-patch
|
06/05/2019
|
|
#36257
|
REST API: It's difficult to impossible to determine the endpoint matched to a request
|
rmccue
|
REST API
|
normal
|
normal
|
6
|
|
enhancement
|
|
01/18/2022
|
|
#38303
|
register_meta and capabilities aren't working as expected
|
rmccue
|
Role/Capability
|
normal
|
normal
|
4
|
Future Release
|
defect (bug)
|
needs-unit-tests
|
06/25/2017
|
|
#39043
|
HTTP API :: Its Not Possible To Send Data In Body For GET Requests
|
rmccue
|
HTTP API
|
normal
|
normal
|
1
|
Future Release
|
enhancement
|
dev-feedback
|
10/02/2017
|
|
#18833
|
Pass raw data into save_post/wp_insert_post
|
rmccue
|
Posts, Post Types
|
normal
|
normal
|
1
|
|
enhancement
|
has-patch
|
06/04/2019
|
|
#34796
|
Facing an issue when using wp_remote_get with streams (non-blocking mode)
|
rmccue*
|
HTTP API
|
normal
|
normal
|
2
|
|
defect (bug)
|
close
|
07/07/2025
|
|
#14981
|
Provide a context for post statuses
|
rockwell15
|
I18N
|
normal
|
normal
|
10
|
Future Release
|
defect (bug)
|
has-patch
|
09/11/2022
|
|
#28033
|
post_categories_meta_box on non-hierarchical custom taxonomy
|
rufein
|
Taxonomy
|
normal
|
normal
|
6
|
Future Release
|
defect (bug)
|
|
06/04/2019
|
|
#64109
|
Bundled themes: Stylesheets should be minified in classic themes
|
rutviksavsani
|
Bundled Theme
|
normal
|
normal
|
1
|
7.1
|
enhancement
|
has-patch
|
02/17/2026
|
|
#38310
|
Improve "wp_update_term" documentation
|
ruudjoyo
|
Taxonomy
|
normal
|
normal
|
8
|
Future Release
|
enhancement
|
needs-unit-tests
|
09/29/2021
|
|
#36202
|
Menus screen: fix persistence of toggles for displayed nav menu item properties
|
ryankienstra
|
Menus
|
normal
|
normal
|
3
|
Future Release
|
defect (bug)
|
has-patch
|
01/29/2026
|
|
#50561
|
Links Widget display: Image alt text and link name are redundant for screen readers
|
sabernhardt
|
Widgets
|
normal
|
minor
|
3
|
Future Release
|
defect (bug)
|
has-patch
|
03/04/2025
|
|
#48787
|
Classic Editor user interface CSS inconsistencies when toggling "Enable full-height editor ..."
|
sabernhardt*
|
Editor
|
normal
|
normal
|
1
|
Future Release
|
defect (bug)
|
has-patch
|
06/27/2025
|
|
#51419
|
Reconsider the UX impact of up/down arrows on meta boxes
|
sarahricker
|
Editor
|
normal
|
normal
|
4
|
Future Release
|
defect (bug)
|
|
07/09/2024
|
|
#51072
|
Add action hook after theme skip links
|
sarahricker
|
Themes
|
normal
|
normal
|
3
|
Future Release
|
feature request
|
|
10/16/2020
|
|
#65044
|
get_post_custom_values() missing array check, inconsistent with get_post_custom_keys()
|
saratheonline
|
Posts, Post Types
|
normal
|
normal
|
4
|
7.1
|
defect (bug)
|
needs-unit-tests
|
04/21/2026
|
|
#65050
|
REST API: Comments controller returns 403 instead of 404 for invalid post ID in update_item()
|
saratheonline
|
REST API
|
normal
|
normal
|
3
|
7.1
|
defect (bug)
|
has-patch
|
04/21/2026
|
|
#65046
|
get_weekstartend() has swapped variable names and comments for month and day
|
saratheonline
|
Date/Time
|
normal
|
normal
|
1
|
7.1
|
defect (bug)
|
has-patch
|
04/20/2026
|
|
#43298
|
Add filter to hide comment types from showing up in the default query
|
schlessera
|
Comments
|
normal
|
normal
|
2
|
Awaiting Review
|
enhancement
|
dev-feedback
|
01/16/2019
|
|
#15386
|
WP_List_Table::get_columns does not work for plugins
|
scribu
|
Administration
|
high
|
major
|
6
|
Future Release
|
defect (bug)
|
close
|
02/16/2023
|
|
#60397
|
Invalidate opcache after theme / plugin updates
|
seebeen
|
Upgrade/Install
|
normal
|
normal
|
1
|
Awaiting Review
|
defect (bug)
|
dev-feedback
|
01/31/2024
|
|
#41672
|
REST create user: existing_user_login is returned before existing_user_email
|
shooper
|
Users
|
normal
|
normal
|
5
|
Future Release
|
enhancement
|
dev-feedback
|
01/21/2026
|
|
#61225
|
Add a new hook to allow custom buttons next to "Add new post" button
|
siddiquesaad
|
Administration
|
normal
|
normal
|
2
|
Awaiting Review
|
enhancement
|
has-patch
|
05/15/2024
|
|
#64080
|
WP_Upgrader doesn't release lock on create_lock
|
skithund
|
Upgrade/Install
|
normal
|
normal
|
2
|
Future Release
|
defect (bug)
|
|
02/19/2026
|
|
#14125
|
Seperate out non-editable options in edit site
|
sorich87
|
Options, Meta APIs
|
normal
|
normal
|
3
|
|
enhancement
|
dev-feedback
|
08/22/2025
|
|
#7231
|
wp_link_pages: option next_and_number
|
sorich87*
|
Posts, Post Types
|
normal
|
normal
|
2
|
Future Release
|
enhancement
|
has-patch
|
08/26/2025
|
|
#40228
|
Use get_sites in get_blog_details
|
spacedmonkey
|
Networks and Sites
|
normal
|
normal
|
10
|
Future Release
|
enhancement
|
has-patch
|
05/26/2023
|
|
#48885
|
REST API: Support reading public settings, implement context handling
|
spacedmonkey
|
REST API
|
normal
|
normal
|
7
|
Future Release
|
enhancement
|
dev-feedback
|
10/20/2025
|
|
#58001
|
Lazy load user capabilities in WP_User object
|
spacedmonkey
|
Users
|
normal
|
normal
|
6
|
Future Release
|
enhancement
|
has-patch
|
02/10/2026
|
|
#15565
|
More context for clean_post_cache()
|
spacedmonkey
|
Cache API
|
normal
|
normal
|
4
|
Future Release
|
enhancement
|
dev-feedback
|
07/12/2022
|
|
#37297
|
Deprecate get_blogaddress_by_id function
|
spacedmonkey
|
Networks and Sites
|
normal
|
normal
|
4
|
Future Release
|
enhancement
|
has-patch
|
09/29/2025
|
|
#64250
|
Refactor redirect_guess_404_permalink to use WP_Query instead of raw SQL
|
spacedmonkey
|
Permalinks
|
normal
|
normal
|
4
|
7.1
|
enhancement
|
has-patch
|
02/20/2026
|
|
#47188
|
Ensure that valid json is return for rest api, even when correct headers not sent.
|
spacedmonkey
|
REST API
|
normal
|
normal
|
3
|
Future Release
|
defect (bug)
|
|
01/03/2021
|
|
#42947
|
REST API wrong total pages
|
spacedmonkey
|
REST API
|
normal
|
normal
|
3
|
Future Release
|
defect (bug)
|
has-patch
|
10/31/2021
|
|
#63021
|
Lazy load user meta
|
spacedmonkey
|
Users
|
normal
|
normal
|
3
|
Future Release
|
enhancement
|
dev-feedback
|
02/10/2026
|
|
#61467
|
Inconsistent cache handling for network (site) meta
|
spacedmonkey
|
Cache API
|
normal
|
major
|
2
|
Future Release
|
defect (bug)
|
dev-feedback
|
03/23/2026
|
|
#57496
|
Lazy load post meta
|
spacedmonkey
|
Posts, Post Types
|
normal
|
normal
|
2
|
Future Release
|
enhancement
|
dev-feedback
|
01/20/2026
|
|
#49277
|
Implement email sanitize in REST API
|
spacedmonkey
|
REST API
|
normal
|
normal
|
1
|
Future Release
|
enhancement
|
dev-feedback
|
11/04/2021
|
|
#17047
|
Not following spec for REQUEST_URI
|
sterlo
|
Rewrite Rules
|
normal
|
normal
|
3
|
Future Release
|
defect (bug)
|
has-patch
|
12/13/2020
|
|
#34083
|
Feed for post type should link to post type archive if available
|
stevenkword
|
Feeds
|
normal
|
normal
|
3
|
Future Release
|
enhancement
|
dev-feedback
|
03/17/2017
|
|
#38133
|
Core widget fields fail to render value of "0" when empty() checks are used
|
stevenkword
|
Widgets
|
normal
|
normal
|
2
|
Future Release
|
defect (bug)
|
has-patch
|
07/29/2025
|
|
#30905
|
Theme Preview - Not working preview when front page setting
|
stevenkword
|
Canonical
|
normal
|
normal
|
1
|
|
defect (bug)
|
|
06/04/2019
|
|
#37763
|
Target server overload due to invalid RSS feed URL in RSS widget
|
stevenkword
|
Feeds
|
normal
|
normal
|
1
|
Awaiting Review
|
defect (bug)
|
|
05/16/2024
|
|
#3260
|
XML output (rss, atom, rdf ...) should always use UTF-8 or CDATA for user input
|
stevenkword
|
Feeds
|
normal
|
normal
|
1
|
Future Release
|
defect (bug)
|
has-patch
|
02/11/2024
|
|
#30049
|
wp_load_translations_early does not work without WPLANG defined
|
swissspidy
|
I18N
|
normal
|
normal
|
3
|
Future Release
|
defect (bug)
|
has-patch
|
09/17/2024
|
|
#62348
|
Textdomain loaded even though translations do not exist bc textdomain have identical start phrase
|
swissspidy
|
I18N
|
normal
|
normal
|
1
|
Future Release
|
defect (bug)
|
reporter-feedback
|
03/11/2025
|
|
#63725
|
Theme textdomain not loaded, if plugin used the textdomain before
|
swissspidy
|
I18N
|
normal
|
minor
|
1
|
Awaiting Review
|
defect (bug)
|
has-patch
|
09/12/2025
|
|
#8994
|
Incorporate MediaRSS Plugin into core
|
technosailor
|
Feeds
|
normal
|
normal
|
8
|
Future Release
|
feature request
|
dev-feedback
|
02/07/2021
|
|
#12945
|
Constrain wp_page_menu()
|
technosailor*
|
Menus
|
normal
|
normal
|
2
|
|
defect (bug)
|
dev-feedback
|
04/16/2025
|
|
#44862
|
Create REST API endpoints to lock, release and takeover post edition
|
timothyblynjacobs
|
REST API
|
normal
|
normal
|
5
|
Awaiting Review
|
feature request
|
|
01/07/2022
|
|
#42780
|
Code Editor: Linter (HTMLHint) should show error if checkbox doesn't have associated <label>
|
tirth03
|
External Libraries
|
normal
|
normal
|
2
|
Future Release
|
enhancement
|
has-patch
|
04/08/2026
|
|
#7813
|
export function does not preserve encoding
|
tott
|
Export
|
normal
|
minor
|
2
|
Future Release
|
defect (bug)
|
close
|
01/04/2026
|
|
#43809
|
Add personal data from posts to personal data export
|
tz-media
|
Privacy
|
normal
|
normal
|
5
|
Future Release
|
enhancement
|
has-patch
|
06/30/2025
|
|
#43879
|
Add tools for anonymizing of post authors
|
tz-media
|
Privacy
|
normal
|
normal
|
5
|
Future Release
|
enhancement
|
needs-unit-tests
|
09/07/2020
|
|
#43880
|
Add functionality to add an anonymous user an get its ID for anonymization of data related to a WordPress user.
|
tz-media
|
Privacy
|
normal
|
normal
|
4
|
Future Release
|
enhancement
|
needs-unit-tests
|
02/04/2026
|
|
#36259
|
Switching language should update date and time formats
|
vagios
|
I18N
|
normal
|
normal
|
10
|
Future Release
|
defect (bug)
|
needs-unit-tests
|
11/10/2025
|
|
#45874
|
Content Section is overlapping the menu background
|
valentinbora*
|
Administration
|
normal
|
trivial
|
1
|
Awaiting Review
|
enhancement
|
reporter-feedback
|
01/17/2024
|
|
#41580
|
Review the usage of the `::-moz-focus-inner` CSS fix for the buttons extra padding in Firefox
|
viktorfroberg
|
Administration
|
normal
|
normal
|
3
|
Awaiting Review
|
enhancement
|
dev-feedback
|
06/23/2025
|
|
#63600
|
Enhancement: Add get_pages_args filter to allow full control over get_pages() arguments before parsing in get_pages()
|
vincent06
|
Posts, Post Types
|
normal
|
normal
|
1
|
Awaiting Review
|
enhancement
|
needs-docs
|
11/19/2025
|
|
#28352
|
New filters in wp-activate.php
|
voldemortensen
|
Login and Registration
|
normal
|
normal
|
4
|
|
enhancement
|
has-patch
|
06/04/2019
|
|
#37522
|
reset password and lost password form functions
|
voldemortensen
|
Login and Registration
|
normal
|
normal
|
4
|
Future Release
|
feature request
|
has-patch
|
04/09/2026
|
|
#38079
|
Add hooks before output for each action in wp-login.php
|
voldemortensen
|
Login and Registration
|
normal
|
normal
|
1
|
Future Release
|
enhancement
|
close
|
05/02/2024
|
|
#15706
|
Allow wildcarded domains in multisite limited email domains
|
westi
|
Login and Registration
|
normal
|
normal
|
8
|
|
enhancement
|
|
06/04/2019
|
|
#11800
|
doubled execution of cron jobs
|
westi
|
Cron API
|
normal
|
normal
|
6
|
Future Release
|
defect (bug)
|
dev-feedback
|
04/04/2021
|
|
#10384
|
Make IIS Permalink support enabled based on capability not on version number
|
westi
|
Permalinks
|
normal
|
normal
|
4
|
Awaiting Review
|
enhancement
|
close
|
01/08/2025
|
|
#10249
|
Page slug in cyrillic = Error 404 - Not Found!
|
westi
|
Permalinks
|
normal
|
normal
|
3
|
Future Release
|
defect (bug)
|
needs-unit-tests
|
02/18/2026
|
|
#13473
|
comment_status should be set to default_comment_status when commentstatusdiv is removed
|
westi
|
Comments
|
normal
|
normal
|
2
|
|
defect (bug)
|
|
06/04/2019
|
|
#15760
|
LiveJournal Importer mishandles some <lj-cut> and <lj user=""> expressions
|
westi
|
Import
|
normal
|
normal
|
1
|
WordPress.org
|
defect (bug)
|
close
|
07/14/2025
|
|
#11465
|
custom field duplicated
|
westi*
|
Editor
|
normal
|
minor
|
2
|
Future Release
|
defect (bug)
|
|
06/08/2022
|
|
#11903
|
insert_with_markers is not threadsafe
|
westi*
|
Permalinks
|
normal
|
major
|
2
|
|
defect (bug)
|
has-patch
|
06/04/2019
|
|
#65015
|
Connectors: Several strings are not translated
|
westonruter
|
I18N
|
high
|
normal
|
7
|
7.0
|
defect (bug)
|
dev-feedback
|
04/21/2026
|
|
#40831
|
Customize: Further improve JS inline documentation
|
westonruter
|
Customize
|
normal
|
normal
|
6
|
Future Release
|
defect (bug)
|
has-patch
|
03/12/2026
|
|
#60597
|
Script Modules API: Allow list of enqueued module data to be exposed
|
westonruter
|
Script Loader
|
normal
|
normal
|
6
|
7.1
|
enhancement
|
has-patch
|
02/17/2026
|
|
#50255
|
get_the_modified_author() not working for posts updated via REST API
|
westonruter
|
Posts, Post Types
|
normal
|
normal
|
5
|
Future Release
|
defect (bug)
|
|
11/06/2025
|
|
#64742
|
PHP 8.5: Incorrect array access in `wp_get_attachment_image_src`
|
westonruter
|
General
|
normal
|
minor
|
4
|
7.0.1
|
defect (bug)
|
dev-feedback
|
04/21/2026
|
|
#64950
|
wp_using_ext_object_cache can return null, causing type failures, potential fatals
|
westonruter
|
Cache API
|
normal
|
normal
|
3
|
7.1
|
defect (bug)
|
has-patch
|
04/21/2026
|
|
#65094
|
AI: Prompt construction fails with fatal error when wp_ai_client_default_request_timeout filter returns negative number
|
westonruter
|
AI
|
normal
|
normal
|
2
|
7.0
|
defect (bug)
|
has-patch
|
04/21/2026
|
|
#64704
|
Code Modernization: Replace void in PHPDoc union return types with null in various core files
|
westonruter
|
General
|
normal
|
normal
|
2
|
7.1
|
defect (bug)
|
has-patch
|
03/31/2026
|
|
#64653
|
WP_Hook::resort_active_iterations() skips next priority when callback removes itself during execution
|
westonruter
|
Plugins
|
normal
|
normal
|
2
|
7.1
|
defect (bug)
|
has-patch
|
04/14/2026
|
|
#64231
|
Customizer fails to save when switching themes due to an orphaned setting left over from a previously active plugin
|
westonruter
|
Customize
|
normal
|
normal
|
1
|
7.1
|
defect (bug)
|
has-patch
|
03/12/2026
|
|
#65026
|
Hide plugin search form on Favorites tab
|
westonruter
|
Plugins
|
normal
|
normal
|
1
|
7.1
|
defect (bug)
|
has-patch
|
04/12/2026
|
|
#63636
|
Enable instant page navigations from browser history via bfcache when sending "nocache" headers
|
westonruter*
|
Administration
|
normal
|
normal
|
7
|
Future Release
|
enhancement
|
needs-unit-tests
|
01/25/2026
|
|
#64066
|
Speculative Loading: Change default eagerness from conservative to moderate when caching is detected
|
westonruter*
|
General
|
normal
|
normal
|
4
|
Future Release
|
enhancement
|
dev-feedback
|
04/09/2026
|
|
#64680
|
Increase PHPStan rule level from zero
|
westonruter*
|
Build/Test Tools
|
normal
|
normal
|
3
|
7.1
|
task (blessed)
|
has-patch
|
03/24/2026
|
|
#61625
|
Styles enqueued from block.json are not correctly configured for RTL
|
westonruter*
|
Script Loader
|
normal
|
normal
|
3
|
7.1
|
defect (bug)
|
has-patch
|
04/09/2026
|
|
#64404
|
Uncaught DivisionByZeroError: Modulo by zero
|
westonruter*
|
Cron API
|
normal
|
normal
|
1
|
7.1
|
defect (bug)
|
has-patch
|
03/19/2026
|
|
#49423
|
Build: Create Webpack build configuration for vendor dependencies
|
whyisjake*
|
Build/Test Tools
|
normal
|
normal
|
4
|
Future Release
|
enhancement
|
has-patch
|
02/08/2021
|