WordPress to Remain Most Attacked Platform, Researchers Say
Found on eWEEK on Tuesday, 03 March 2015
The trend will continue in 2015, driven by the lack of security awareness among WordPress' large user base and the lack of security expertise among its plugin developers, according to experts.
In 2010, Joomla and its associated plugins had four times as many vulnerabilities reported as Drupal and WordPress, according to the National Vulnerability Database. In 2012, Drupal led the pack, and in 2014, WordPress and its plugins had three times as many bugs reported as the next highest CMS.
Wordpress has to address not only its own bugs, but also needs to disable dropped or unsupported plugins. The developers need to realize that abandoning a plugin can cause big problems, and webmasters have to understand that it is essential to keep their CMS updated, as well as the used plugins.