Make WordPress Core

Changes between Initial Version and Version 1 of Ticket #43936, comment 70


Ignore:
Timestamp:
04/28/2025 11:16:00 AM (8 weeks ago)
Author:
SirLouen
Comment:

Legend:

Unmodified
Added
Removed
Modified
  • Ticket #43936, comment 70

    initial v1  
    1919Many reporters propose that there is no Use-Case for setting Administrator (or even Editor) as the default role. Furthermore, some report that this has been a major security concern because hackers like to switch this default role to gain full access to the site. Options commented here are:
    20201. Completely removing the possibility to set a privileged default role (Administrator/Editor) in the Admin Front End
    21 2. Completely removing the possibility to set privilege default role by any means
     212. Completely removing the possibility to set privilege default role by any means (including checks that hinder this setting if set directly towards the DB)
    22223. Now inside this position we can go further: Custom roles. Also removing custom roles with admin capabilities.
    2323