Conversation
reviewThis plugin contains a cross-site-scripting vulnerability that was first discovered on July, 18th. Since then, me and other userts have tried to inform/ reach the plugin’s developer via the plugin’s support-forum, but never received a fix or reply. Therefore, i had to deactivate this plugin and would recommend others to do the same, due to mentioned security-issues mentioned above. This topic was modified 2 years, 10 months ago by webpie .
Hello @webpie I thought I have updated you via our email. That vulnerability issue was already fixed but somehow they didn’t update it. We contacted them and updated the status immediately. You can check it here – https://patchstack.com/database/vulnerability/hm-multiple-roles/
Hello @webpie I thought I have updated you via our email. That vulnerability issue was already fixed but somehow they didn’t update it. We contacted them and updated the status immediately. You can check it here – https://patchstack.com/database/vulnerability/hm-multiple-roles/