High-risk tools in WordPress MCP Server
4 of the 192 tools in WordPress MCP Server are classified as high risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at high risk
-
image_regenerate_thumbnailsExecuteRegeneriert alle Bildgrößen für ein oder mehrere Bilder
-
jwt_authenticateExecuteAuthentifiziert bei WordPress und holt einen JWT Token (erfordert JWT Plugin)
-
rest_api_batchExecuteFührt mehrere REST API Anfragen in einer Batch-Operation aus (WordPress 5.6+)
-
rest_api_executeExecuteFührt eine beliebige WordPress REST API Funktion aus. Unterstützt GET, POST, PUT, PATCH und DELETE Operationen.
Attacks that target this class
High-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.