WordPress.org

Ready to get started?Download WordPress

Forums

W3 Total Cache
Security Issue! (5 posts)

  1. LavishDhand
    Member
    Posted 6 months ago #

    I just came across this accidentally, a friend of mine opened my website on his mobile phone and the website loaded with the admin bar showing me logged in!

    ADMIN BAR SCREENSHOT

    This mobile device was using its own GPRS/3G connection and my computer was using my WIFI broadband what I mean is the devices were not even on the same network (except Internet).

    I requested some other friends of mine to check the same. My friends were at their home and offices (at different locations in my city) and they all reported that they saw admin bar with ME logged in.

    The admin bar was disappeared from the other devices only when I cleared 'all cache' through w3total cache.

    On the computer I originally log in, I cannot log out from my WordPress website. When I press ‘log out’, it keeps loading and loading forever. So I just clear the browser cache and think its logged out.

    BROWSER CACHE CLEANED - SCREENSHOT

    I have been reporting the issue that I could not log out off my websites here --

    http://wordpress.org/support/topic/cannot-log-out-even-a-fresh-install?replies=3

    http://wordpress.org/support/topic/cannot-logout-2?replies=8

    http://wordpress.org/support/topic/not-able-to-log-out-from-my-wordpress-dashboard-after-installing-windows-81?replies=4

    http://wordpress.org/plugins/w3-total-cache/

  2. LavishDhand
    Member
    Posted 5 months ago #

    I have kept the w3total cache deactivated to avoid security risks. I am wondering if there is any solutions.

    Please comment.

  3. pandro
    Member
    Posted 5 months ago #

    Have you tried to set "don't cache page for logged users"?

  4. LavishDhand
    Member
    Posted 5 months ago #

    That seems to have resolved the problem! Thank you very much.

  5. leslie1019wp
    Member
    Posted 5 months ago #

    This happened to me last night! I thought it was just me. I wasn't even logged in, but I went to our homepage and saw I was logged in as one of our writers (and she wasn't even logged in, either.) It only lasted momentarily. When I came back to the homepage 10 minutes later it was gone. It was very temporary.

    We've fully optimized our W3TC config, so I've no idea why it would have occurred. As I've continued to monitor the site, it has not recurred.

    At least I'm not alone in this. But I cannot say it's b'c of W3TC. I'm really not sure what caused it.

Reply

You must log in to post.

About this Plugin

About this Topic