WPIntell

Source evidence

Security Vulnerability

Arigato Autoresponder and Newsletter · support · 2025-04-15T08:31:00+00:00

mixedsentiment
highseverity
0.94relevance
2replies
Evidence linked to opportunitycommercial context

Proof Health

Open evidence

Commercial opportunities need traceable source links before they are treated as build-worthy.

6 / 36 rows with source links

16.7% of this page's analysis has direct source links.

0 build-decision rows missing links

0 rows here require auditable proof before promotion.

30 rows with no attached evidence

0 rows have source counts but still need direct links.

Conversation

support
hadean resolved
Hi, I’m trying out the free version of the plugin on my site before buying. A scan with WordFence shows that it has a critical security vulnerability that allows remote php execution on attachments, that hasn’t been patched. https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-plugins/bft-autoresponder Is there a patch on the way, any advice? Thanks This is fixed now in 2.7.2.6 Ok, thank you, please make sure it appears as patched in the vulnerability database of wordfence as it produces a false positive in the scan. I have to make sure, as I will deploy the paid version in large scale production site. Thanks again

Comments

2 shown
Bob 2025-04-16T07:30:00+00:00

This is fixed now in 2.7.2.6

hadean 2025-04-18T09:11:00+00:00

Ok, thank you, please make sure it appears as patched in the vulnerability database of wordfence as it produces a false positive in the scan. I have to make sure, as I will deploy the paid version in large scale production site. Thanks again