Support » Plugin: Radio Station by netmix® - Manage and play your Show Schedule in WordPress! » Unauthorised AJAX Calls via Freemius
Unauthorised AJAX Calls via Freemius
-
Got this warning today…
The scheduled site scan found 2 issues
Known issues in Radio Station v2.4.0.5
VulnerabilitiesUnauthorised AJAX Calls via Freemius
The page I need help with: [log in to see the link]
-
Thanks.
We’re getting ready to release a patch from Freemius in the coming days.
Tony
Great Thanks!
Any idea on when the update will be released? Thanks!
Just released as of 12:05 am EST Sun March 6th.
Tony
Tony, after updating to the latest release I encountered a whole bunch of interface issues. I had to roll back my website to a daily backup to eliminate the issues.
Could you please investigate to see if there would be any conflicts?
Because I can’t see your live site with the issues, it would be hard to know what happened. Can you check your server log and see if there are any errors?
Our demo site at https://demo.radiostation.pro did not break, so it could be something on your side that you had custom codes with CSS.
What were the interface issues? We did just change our Hosts and Producers tab to Team, because if we add more user roles, we’re going to need to list those out under the Team tab with a filter, but we haven’t really made any interface updates specifically – just some bug fixes and a major security fix for the Freemius SDK.
I’ll ask Tony Hayes to see if he can help identify your issues, but we need something lo look at to narrow it down.
Were the Freemius AJAX calls resolved?
Tony,
Looks like the Freemius issues have still not been resolved. Link to warning:
Also, I’m creating a staging site so you can see the interface issues. Should have something for you tonight.
Alvaro
Tony,
You can see some of the interface issues that have occurred after the update at a testing plugin staging site located at https://wordpress-588111-2482688.cloudwaysapps.com
To point out the issues I have included this image https://wordpress-588111-2482688.cloudwaysapps.com/wp-content/uploads/2022/03/Capture.png
Here I’ve included the link to the site in production that has the non updated plugin that doesn’t show the interface issues… https://wordpress-588111-2171840.cloudwaysapps.com/
Thanks again for your help, as I’m sure pointing out issues help you in your dev.
Once again… thanks!
@midwestbroadcasting I see in the JavaScript window that Social Wall is not loading. Does Social Wall run both of those features that are not displaying properly? Is the pop-up part of Social Wall or another plugin?
I have an unrelated question for you. How does your audio player page call up the bio of the artist in the recently played list? Where does that meta data come from?
@midwestbroadcasting So, these AJAX calls are the issues with Freemius and they should have been resolved with the upgrade. Are you running Radio Station PRO too, or just the free version? Did you clear any caching?
The pop up is part of adplugg.com which is an ad server service. It runs off a simple plugin they provide.
I’m not sure about the unrelated player question. The player was created by another department.
@midwestbroadcasting Okay…strange that the plugin would affect both of those other plugins, yet still work correctly. I need to wait for Tony Hayes to get back online around 6 pm EST as he’s in Australia. They are suffering from power outages related to massive flooding from heavy rains.
- The topic ‘Unauthorised AJAX Calls via Freemius’ is closed to new replies.