
Research
/Security News
CanisterWorm: npm Publisher Compromise Deploys Backdoor Across 29+ Packages
The worm-enabled campaign hit @emilgroup and @teale.io, then used an ICP canister to deliver follow-on payloads.
@wordpress/edit-post
Advanced tools
Edit Post Module for WordPress.
This package is meant to be used only with WordPress core. Feel free to use it in your own project but please keep in mind that it might never get fully documented.
Install the module
npm install @wordpress/edit-post
This package assumes that your code will run in an ES2015+ environment. If you're using an environment that has limited or no support for such language features and APIs, you should include the polyfill shipped in @wordpress/babel-preset-default in your code.
Extending the editor UI can be accomplished with the registerPlugin API, allowing you to define all your plugin's UI elements in one place.
Refer to the plugins module documentation for more information.
The components exported through the API can be used with the registerPlugin (see documentation) API.
They can be found in the global variable wp.editPost when defining wp-edit-post as a script dependency.
Initializes and returns an instance of Editor.
Parameters
string: Unique identifier for editor instance.string: Post type of the post to edit.Object: ID of the post to edit.?Object: Editor settings object.Object: Programmatic edits to apply initially, to be considered as non-user-initiated (bypass for unsaved changes prompt).Undocumented declaration.
Undocumented declaration.
Undocumented declaration.
Deprecated since 6.6, use
wp.editor.PluginPostPublishPanelinstead.
Renders provided content to the post-publish panel in the publish flow (side panel that opens after a user publishes the post).
Parameters
Object: Component properties.[string]: An optional class name added to the panel.[string]: Title displayed at the top of the panel.[boolean]: Whether to have the panel initially opened. When no title is provided it is always opened.[WPBlockTypeIconRender]: The Dashicon icon slug string, or an SVG WP element, to be rendered when the sidebar is pinned to toolbar.Element: Children to be renderedReturns
Component: The component to be rendered.Undocumented declaration.
Deprecated since 6.6, use
wp.editor.PluginPrePublishPanelinstead.
Renders provided content to the pre-publish side panel in the publish flow (side panel that opens when a user first pushes "Publish" from the main editor).
Parameters
Object: Component props.[string]: An optional class name added to the panel.[string]: Title displayed at the top of the panel.[boolean]: Whether to have the panel initially opened. When no title is provided it is always opened.[WPBlockTypeIconRender]: The Dashicon icon slug string, or an SVG WP element, to be rendered when the sidebar is pinned to toolbar.Element: Children to be renderedReturns
Component: The component to be rendered.Undocumented declaration.
Undocumented declaration.
Used to reinitialize the editor after an error. Now it's a deprecated noop function.
Store definition for the edit post namespace.
Related
Type
ObjectThis is an individual package that's part of the Gutenberg project. The project is organized as a monorepo. It's made up of multiple self-contained software packages, each with a specific purpose. The packages in this monorepo are published to npm and used by WordPress as well as other software projects.
To find out more about contributing to this package or Gutenberg as a whole, please read the project's main contributor guide.

FAQs
Edit Post module for WordPress.
The npm package @wordpress/edit-post receives a total of 15,183 weekly downloads. As such, @wordpress/edit-post popularity was classified as popular.
We found that @wordpress/edit-post demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 23 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
The worm-enabled campaign hit @emilgroup and @teale.io, then used an ICP canister to deliver follow-on payloads.

Research
/Security News
Attackers compromised Trivy GitHub Actions by force-updating tags to deliver malware, exposing CI/CD secrets across affected pipelines.

Security News
ENISA’s new package manager advisory outlines the dependency security practices companies will need to demonstrate as the EU’s Cyber Resilience Act begins enforcing software supply chain requirements.