Conversation
supportI received a notification today via wordfence that the ‘The Plugin “Hide Shipping Method For WooCommerce” has a security vulnerability’ and ‘Vulnerability Severity: 4.3/10.0 (Medium) Vulnerability Information ‘. Apparently there is a Missing authorization for the plugin. Could this please be checked? The page I need help with: [ log in to see the link]
Hi Dwoott, Thank you for reaching out to us. We are actively investigating this security concern and will release a patched version before the end of tomorrow. Best regards, Hitendra | Dotstore Team
We will update here after new release This reply was modified 1 year, 5 months ago by Hitendra Chopda .
Is this the same issue? https://patchstack.com/database/wordpress/plugin/hide-shipping-method-for-woocommerce/vulnerability/wordpress-hide-shipping-method-for-woocommerce-plugin-1-5-0-broken-access-control-vulnerability?_a_id=241
Yes, this is the same issue and we are working on it.
We’re getting the same wordfence warnings. Any solutions ahead soon? Is it advised to deactivate the plugin for now?
Hi @dwoott @akalien @hakait I’d like to inform you that we have fixed this security issue in the latest plugin version (1.5.2). Please update to the latest version to resolve the issue. Let us know if you need any assistance. Thank you, Hitendra | Dotstore Support Team
Hi, I updated and everything seems OK. Good job, thank you very much!
Great job. Thanks a lot!
That’s great, thank you 🙂
Thank you all for sharing your valuable feedback with us. I’m going to mark this as resolved. If you have any further questions, you can start a new thread. Best Regards, Hitendra & Dotstore Team
Hi Dwoott, Thank you for reaching out to us. We are actively investigating this security concern and will release a patched version before the end of tomorrow. Best regards, Hitendra | Dotstore Team
We will update here after new release This reply was modified 1 year, 5 months ago by Hitendra Chopda .
Is this the same issue? https://patchstack.com/database/wordpress/plugin/hide-shipping-method-for-woocommerce/vulnerability/wordpress-hide-shipping-method-for-woocommerce-plugin-1-5-0-broken-access-control-vulnerability?_a_id=241
Yes, this is the same issue and we are working on it.
We’re getting the same wordfence warnings. Any solutions ahead soon? Is it advised to deactivate the plugin for now?
Hi @dwoott @akalien @hakait I’d like to inform you that we have fixed this security issue in the latest plugin version (1.5.2). Please update to the latest version to resolve the issue. Let us know if you need any assistance. Thank you, Hitendra | Dotstore Support Team
Hi, I updated and everything seems OK. Good job, thank you very much!
Great job. Thanks a lot!
That’s great, thank you 🙂
Thank you all for sharing your valuable feedback with us. I’m going to mark this as resolved. If you have any further questions, you can start a new thread. Best Regards, Hitendra & Dotstore Team