Honestly this will happen less and less over time as everyone starts using codex security and similar tools
So I do think there's something quite important to note about the vuln chain used in the recent WordPress monster SQL injection thing:
The two named defects themselves were introduced into the codebase in *2025.*
Yes, bugs like noauth SQLi are still happening in major software.



