Major Security issues with wpo-plugins-tables-list.json
-
The WP-Optimize plugin creates the file wpo-plugins-tables-list.json. The file contains all the plugin information for my website and is a major security issue. Your file has created a blueprint for recent hacking attempts on several of my websites. Server log files determined that these hackers were using plugin information found in the wpo-plugins-tables-list.json to exploit plugins on our websites.
I use the WP Hide plugin to disable the WordPress REST API as well as other files. This was necessary due to daily hacking attempts. However WP-Optimize is still exposing this sensitive information.
How can you disable the file from being generated? You should inform your users that your plugin creates the wpo-plugins-tables-list.json and it that it contains all the plugin information for the website.
- The topic ‘Major Security issues with wpo-plugins-tables-list.json’ is closed to new replies.