• Resolved rtdev

    (@rtdev)


    I just want to let you know your plugin has been flagges for a long time even with updates i get 10 emails a day warning of vulnerability I am now deleting your plugin and building my own with ai for safety

    Site Scan

    The scheduled site scan found 3 issues when scanning

    Known Vulnerabilities

    WordPress Complianz plugin <= 7.5.1 – Sensitive Data Exposure vulnerability
    Manage Vulnerability | View in Patchstack

    WordPress Complianz plugin <= 7.5.1 – PHP Object Injection vulnerability
    Manage Vulnerability | View in Patchstack

    WordPress Complianz plugin <= 7.5.1 – Server Side Request Forgery (SSRF) vulnerability
    Manage Vulnerability | View in Patchstack

Viewing 6 replies - 1 through 6 (of 6 total)
  • Plugin Support robiub

    (@robiub)

    Hi @rtdev

    Thanks for flagging this. We’re aware of the issue and actively working on a fix.

    Best of luck with your project! If you are still interested in our plugin, updates on this topic will be posted here: https://wordpress.org/support/topic/3-security-issues/

    Kind regards,
    Roberto.

    Thread Starter rtdev

    (@rtdev)

    Thanks for the update, Claude Ai helped me build a similar lighting plugin includes everything you have took him 5 minutes and my website performance also jumped, maybe later i come back

    Plugin Author Aert

    (@aahulsebos)

    Hello! Our proposed fixes are being reviewed by Patchstack; understand both our and Patchstack’s response is appropriate to the impact of these vulnerabilities and are planning on releasing shortly.

    regards Aert

    Thread Starter rtdev

    (@rtdev)

    Thats great but i just uninstaleld your plugin on all my customer sites several thousands of them, we used ai to build our own this way we dont have security issues. I wish you success with your project thanks for the update its a risk we cant continue to take .

    grombleton

    (@grombleton)

    “we used ai to build our own this way we dont have security issues”

    Said without a hint of irony.

    Plugin Support robiub

    (@robiub)

    Hello @rtdev

    JFI, the update has been released! Simply updating the plugin will fix the vulnerabilities.

    We apologize again for the inconvenience.

    Kind regards,
    Roberto.

Viewing 6 replies - 1 through 6 (of 6 total)

You must be logged in to reply to this topic.