Conversation
supportEarlier Situation (Single Opt-in): With Single Opt-in enabled, subscriptions are confirmed immediately without verification. The system allows direct email updates via the nm=profile attribute, meaning an attacker could modify a subscriber’s email or unsubscribe users simply by knowing their email address. This creates a significant vulnerability due to weak authentication in the subscription workflow. Later Situation (Double Opt-in): With Double Opt-in enabled, a confirmation email is sent when a user subscribes, improving security during initial registration. However, a flaw still exists during email updates: When a subscriber updates their email address, a confirmation email is sent to the new email ID. After confirmation, the system does not properly validate or enforce the update. As a result, even after the new email owner confirms, the email address in the system remains unchanged. The page I need help with: [ log in to see the link]
Hello @capg1436 , I’ll close this one as it is a duplicate of https://wordpress.org/support/topic/email-change-vulnerability-in-double-opt-in-workflow/ . Michael
Hello @capg1436 , I’ll close this one as it is a duplicate of https://wordpress.org/support/topic/email-change-vulnerability-in-double-opt-in-workflow/ . Michael