Wordpress is great for rapid prototyping but as history has shown, relying on third parties for additional functionalities in production environments, comes with great risks. Most usage of Wordpress today are definably not blogs, but full blown websites with many functionalities not found on a blogging software.
I wasn't surprised to read that once again the plugins were the cause of the security issues. I don't know what the dynamics are for WordPress plugin developers to write this much vulnerable code, but WordPress itself has had very few vulnerabilities over the years. Even still, the vulnerabilities this plugin exploits have CVE numbers starting with 2016 and 2019. I'd say that you can use WordPress for websites perfec…
1. Random person who doesn't know anything about computers has stumbled their way into having a wordpress site
2. This person wants their site to do something special
3. This person can't find it online
4. This person decides not to give up and cobbles something together using random decade old examples from online
5. This person decides to share their work on the wordpress plugin store
6. Many wordpress sites get hacked