• Resolved KC George

    (@kcgeorge)


    I represent Brizy Page Builder plugin. The following 4 files from Brizy Pro Version 2.6.0 are reported by Wordfence scan as malicious or unsafe and the issue is flagged as “Critical”. Have a look at the screenshot at https://jmp.sh/FFdmtyIR

    1. /wp-content/plugins/brizy-pro/public/editor-build/prod/js/group-all.pro.min.js Issue type:?Redirect:PHP/fakead.11365. Description:?Javascript redirection with added obfuscation
    2. /wp-content/plugins/brizy-pro/public/editor-build/prod/js/group-2_3.pro.min.js Issue type is: Redirect:PHP/fakead.11365 Description: Javascript redirection with added obfuscation
    3. wp-content/plugins/brizy-pro/public/editor-build/prod/js/group-1_3.pro.min.js Issue type is: Redirect:PHP/fakead.11365 Description: Javascript redirection with added obfuscation
    4. /wp-content/plugins/brizy-pro/public/editor-build/prod/js/group-3.pro.min.js Issue type is: Redirect:PHP/fakead.11365 Description: Javascript redirection with added obfuscation

    How to reproduce

    1. Install Brizy Page Builder from the WordPress plugin repository
    2. Install Brizy Pro 2.6.0 from https://jmp.sh/dvykcrZ7
    3. Run the Wordfence scan

    Our developers have looked into this issue and have felt that this is a false positive. Kindly confirm if the above files are truly malicious or unsafe.

    KC George
    Customer Care
    https://www.brizy.io/

Viewing 1 replies (of 1 total)
  • Plugin Support wfpeter

    (@wfpeter)

    Hi @kcgeorge, thanks for reaching out.

    We will automatically collect and log legitimate files for repository plugins and WordPress itself, but with off-repo files for paid/pro versions we don’t get the same updates or notifications. It does look like an issue that has arisen due to this kind of problem by the reason given in the scan.

    I would recommend pasting the helpful information from your post above to?wfi-support @ wordfence . com?to reach our team to see if we can find a solution for you. For anybody finding this topic, that’s for Wordfence Intelligence only and is not available for plugin support queries.

    Many thanks,
    Peter.

Viewing 1 replies (of 1 total)
  • You must be logged in to reply to this topic.