Conversation
supportFlag from WP Engine regarding this version of the plugin: WordPress Five Star Business Profile and Schema Plugin <= 2.3.19 is vulnerable to a medium priority Arbitrary Code Execution https://patchstack.com/database/wordpress/plugin/business-profile/vulnerability/wordpress-five-star-business-profile-and-schema-plugin-2-3-19-arbitrary-code-execution-vulnerability
Hi cc, Sorry for the late reply on this. It seems as though this is related to an earlier report that we submitted a patch/fix for, which was approved, but has seemingly since been unapproved. We’ll work with Patchstack and submit a revised patch to meet the new criteria. Hopefully it will be approved shortly.
Thanks for the update. I look forward to the latest update.
Hi cc, Sorry for the late reply on this. It seems as though this is related to an earlier report that we submitted a patch/fix for, which was approved, but has seemingly since been unapproved. We’ll work with Patchstack and submit a revised patch to meet the new criteria. Hopefully it will be approved shortly.
Thanks for the update. I look forward to the latest update.