WPIntell

Source evidence

Access control vulnerability

ShareThis Dashboard for Google Analytics · support · 2022-11-23T10:31:00+00:00

mixedsentiment
highseverity
0.94relevance
3replies
Evidence linked to opportunitycommercial context

Proof Health

Open evidence

Commercial opportunities need traceable source links before they are treated as build-worthy.

5 / 31 rows with source links

16.1% of this page's analysis has direct source links.

0 build-decision rows missing links

0 rows here require auditable proof before promotion.

26 rows with no attached evidence

0 rows have source counts but still need direct links.

Conversation

support
robdxw resolved
Hi, is there any news on a fix for the access control vulnerability disclosed today? https://patchstack.com/database/vulnerability/googleanalytics/wordpress-sharethis-dashboard-for-google-analytics-plugin-3-1-2-broken-access-control-vulnerability?_a_id=329 Thanks. Hi @robdxw , Thank you for reporting this. Our engineering team is aware of this and we hope to release a fix soon! Best. Hi, is there any update on this? Patchstack is reporting that it’s still an issue in v3.1.4: https://patchstack.com/database/vulnerability/googleanalytics/wordpress-sharethis-dashboard-for-google-analytics-plugin-3-1-2-broken-access-control-vulnerability Thanks! Hi @robdxw , We deeply apologize for the wait here. Nonetheless, I’m happy to tell you that this bug has been fixed on the latest version of the plugin (3.1.5), please update the plugin so the changes take effect. Best regards and thank you again for the notice, The ShareThis Technical Support team.

Comments

3 shown
ShareThis 2022-11-25T20:39:00+00:00

Hi @robdxw , Thank you for reporting this. Our engineering team is aware of this and we hope to release a fix soon! Best.

robdxw 2022-12-14T17:19:00+00:00

Hi, is there any update on this? Patchstack is reporting that it’s still an issue in v3.1.4: https://patchstack.com/database/vulnerability/googleanalytics/wordpress-sharethis-dashboard-for-google-analytics-plugin-3-1-2-broken-access-control-vulnerability Thanks!

ShareThis 2023-01-09T16:36:00+00:00

Hi @robdxw , We deeply apologize for the wait here. Nonetheless, I’m happy to tell you that this bug has been fixed on the latest version of the plugin (3.1.5), please update the plugin so the changes take effect. Best regards and thank you again for the notice, The ShareThis Technical Support team.