WordPress.org

Support

Support » Plugins and Hacks » SECURITY BUG: Project manager comments feed into "recent comments" list

SECURITY BUG: Project manager comments feed into "recent comments" list

  • ArcherTC
    Participant

    @archertc

    In a theme with Simple Recent Comments plugin baked in, the following occurs: the comments from Project Manager show up as comments from users on the site’s frontend.

    While the backend comments do not show up in full on the frontend of the site, the following does:

    – the person who made the comment
    – the name of the entry to which the comment was made (with subfolder structure revealed for message, task)
    – a link to the comment (which thankfully generates a 404 message on click, but still!)

    Suggested fixes?

    http://wordpress.org/extend/plugins/wedevs-project-manager/

Viewing 2 replies - 1 through 2 (of 2 total)
Viewing 2 replies - 1 through 2 (of 2 total)
  • The topic ‘SECURITY BUG: Project manager comments feed into "recent comments" list’ is closed to new replies.