WordPress 4.7 Feature Proposals

WordPress 4.7 Feature Proposals & Merges

Three proposal posts have been published and approved since our last update: All five of the major customize feature projects proposed for WordPress 4.7 have been successfully merged (in order): Create pages within live preview during site setup – #34923, #38013, #38164 Add new pages while building menus and setting a static front page; outline your site directly in the customizer. Improving sliding panels UI – #34391, #34343, #29158 Customizer navigation is now fast.
Source: 4.7 – Make WordPress Core

Posted in Wordpress | Tagged | Comments Off on WordPress 4.7 Feature Proposals

WordPress version 4.5.3 Released

WordPress version 4.5.3 Released to Fix Vulnerability

WordPress version 4.5.3 was released several hours ago by the WordPress Core team. This update is a maintenance and security release that fixes a vulnerability. This security expolit allows hackers to bypass any password protected post. Since this is a high severity security exploit, it is recommended that you update your WordPress core as soon as possible to close any possible security gaps in your site.

Vulnerability Information

WordPress allows you to create posts that are protected by a password and only users with that password can then gain access to the post.

The team over at WordFence discovered a vulnerability on May 3rd that allowed any user with an unprivileged account to bypass the password protection WordPress provides. Consequently, anonymous attackers are able to exploit this vulnerability and gain access to password protected posts on websites where registration is open.

The severity of this exploit was listed as 7.5 (high).

All of our plugins have been tested against this new WordPress core and are compatible.

Here’s is more info about this specific vulnerability from the WordFence team:
https://www.wordfence.com/blog/2016/06/wordpress-core-vulnerability-bypass-password-protected-posts

Also, here’s more info on the full list of vulnerabilities patched in WordPress 4.5.3:
https://wordpress.org/news/2016/06/wordpress-4-5-3/

Posted in Wordpress | Tagged , | Leave a comment

Javascript error after WP 4.5 update

Many people have been experiencing the dreaded Javascript error after WP 4.5 update. Basically, jQuery appears to have stopped working after the update and features on their sites are no longer working.

I’ve had a few clients contact me regarding this, some for our plugins and others for sites I maintain. While the problem does not exist in any of our plugins, I thought I would share what I’ve learned and how I was able to fix the problem.

Javascript error after WP 4.5 update

If portions of your WordPress site have stopped working, like dynamic navigation, hide/show elements, galleries, etc. you may be experiencing this issue as well.

If you view the Javascript console window (F12 in Chrome) you may find an error similar to this:

‘Syntax error, unrecognized expression: a[href*=#]’ or

‘Syntax error, unrecognized expression: a[href*=#]:not([href=#])’

The error is caused by any jQuery code snippet that contains something similar to the following expression: ‘a[href*=#]’ or ‘a[href*=#]:not([href=#])’. This snippet would most likely either be injected into the page, or loaded as a javascript file, by a plugin or theme. You can search your page source (view source), or click on any of the javascript file links, and do a search for the text that appears after the colon in the JS error you found.

Syntax error, unrecognized expression: RESOLVED

What I had to do on client site was to actually search each and every javascript file to find the where the format error was located. Once I found the offending code, I modified it to include quotes around the attribute values.

In this case: ‘a[href*=#]‘ became: ‘a[href*=”#”]‘. Once all of the code changes were in place and uploaded to the site – VIOLA!! Everything was back to working the way it should be.

WP 4.5 and jQuery Syntax Error

The main issue has been caused by the bundled jQuery that comes with the WordPress core has been updated to version 1.12.2. This new jQuery version is much more strict on the syntax passed in. This means the problematic snippets need to have the ‘href’ attribute value wrapped in quotes to be valid and quiet down the jQuery police.

Here some mentions of the problem in the WordPress forums: https://wordpress.org/support/topic/wp-45-and-jquery-syntax-error

And here it is again on the jQuery GitHub Repository: https://github.com/jquery/jquery/issues/2885

Posted in Custom Wordpress Development, JavaScript, PHP, Web Development | Tagged , , | Leave a comment

ReFlex Gallery is WordPress 4.5 Compatible

Both the free version and pro version of ReFlex Gallery have been tested and verified as WordPress 4.5 compatible.

No update is required at this time, but make sure you are running the most up to date versions of the plugin on your site. The current versions are:

ReFlex Gallery (version 3.1.5)
ReFlex Gallery Premium (version 3.1.5)

Posted in ReFlex Gallery | Leave a comment

Prosperity Plugin is Compatible with WordPress version 4.5

Prosperity has been tested and verified to be compatible with WordPress version 4.5

No update is needed at this time, but please make sure you are running the current version (2.0.1) on your site.

Posted in Wordpress Plugins | Leave a comment

Custom Post Donations Compatible with WordPress 4.5

Both versions of the Custom Post Donations plugin have been tested and confirmed to be compatible with the new WordPress core (4.5).

No additional download is necessary, but make sure you do have the current version of the plugin to prevent any security vulnerabilities.

Custom Post Donations (version 4.1.1)
Custom Post Donations Premium (version 4.1.2)

Posted in Custom Post Donations Pro | Tagged , , , | Leave a comment

WP Translate is Compatible with WordPress 4.5

WP Translate – Translation WordPress Plugin and WP Translate Pro have been tested and confirmed to have no conflicts with the latest WordPress version 4.5.

While no download is needed for the two translation plugins to be compatible with WP 4.5, you should make sure your plugins are kept up to date to prevent any security vulnerabilities.

The current version for both the free and pro version is 4.8.2.

Posted in WP Translate | Tagged , | Leave a comment

WP Easy Gallery Compatible with WordPress 4.5

WP Easy Gallery 4.1.5 has been tested and verified to be compatible with WordPress version 4.5.

Both the free version and Pro version have been tested against the current WordPress core (4.5) and no incompatibilities have been found.

Posted in WP Easy Gallery, WP Easy Gallery Pro | Tagged , | Leave a comment

WP Easy Gallery Update – version 4.1.5

WP Easy Gallery has been updated to version 4.1.5. This update includes:

  • fixed hard-coded image paths and file paths
  • sanitize input and output fields to possible prevent XSS vulnerabilities
  • show short code with key instead of slug when creating a new gallery
  • changed short code button to use WordPress AJAX functionality

This update has been tested against WordPress core version 4.4.1

This update is for both the Free and Pro version.

Posted in WP Easy Gallery, WP Easy Gallery Pro | Leave a comment

Google Translate Plugin Update – WP Translate 4.8.2

WP Translate has been updated to version 4.8.2. This update includes:

  • fixed hard-coded image paths and file paths
  • sanitize input and output fields to possible prevent XSS vulnerabilities

This update is for both the Free and Pro version.

Posted in WP Translate | Tagged | Leave a comment