Viewing 2 replies - 1 through 2 (of 2 total)
  • Removing _wpnonce in a plugin would likely introduce major security issues – particularly for cross-site scripting.
    ?
    ?A bit of Mr.Google should give you some clues on how to setup your caching to cope with live WP form submits.

    Plugin Author Takayuki Miyoshi

    (@takayukister)

    If the nonce was based on the time frame, it could be conflicting with cache plugins, so ZenCache’s decision makes sense in such situations. The nonce Contact Form 7 uses by default is not based on time frame, so the cache plugin doesn’t need to do it. Turn it off if it’s optional.

Viewing 2 replies - 1 through 2 (of 2 total)
  • The topic ‘WP Nonce’ is closed to new replies.