PureNews

PureNews is an amazingly sleek and powerful news theme with unlimited color variations.

View full feature list Check out the live demo Buy this theme today

WordPress Top Commentators Hijack Fix Released

Posted by on 30th Apr 2008 WordPress Plugins 1 comment

New BloggingTips author Sarah recently noticed a major flaw in the popular Show Commentators Plugin for WordPress.

As Sarah explained last month :

To briefly explain, the plugin creates the top commentators list by counting the number of comments made per name which is easily forged, by accident or on purpose. It then links the name using the last URL given on that name’s comment. So all you need is someone to forge someone else’s name and use a different URL and they get a nice little, usually no followed, link from your site.

Thankfully, Sarah was able to fix it by creating the top commentators list using email addresses instead of names. As she points out, it is very easy to forge a name which is being displayed compared to a hidden email address which is not.

If you use the top commenators plugin I recommend you downloading this fix so that you no cheaters get on your list.

You can download the fix from the link below :

Top Commentators Hijack Fix

Kevin Muldoon is a webmaster and blogger who lives in Central Scotland. His current project is WordPress Mods; a blog which focuses on WordPress Themes, Plugins, Tutorials, News and Modifications and useful resources such as 101 Places To Find Images For Your Blog Posts.

1 comment - Leave a reply
  • Posted by David Bradley on 30th Apr 2008

    I take it someone has notified the original plugin author so that the patch can be incorporated into the source…

    db