• Resolved thompsonpaul

    (@thompsonpaul)


    Given the recent security issues, it’s frustrating that a proper changelog isn’t provided.

    The changelog here on wp.org has only a single cryptic entry, and the link in the header of plugin itself on the WP plugin dashboard to “What’s New” links to a post from back in July.

    I shouldn’t have to go digging to find a github repo or something in order to simply find a proper changelog.

    Where is the current, accurate changelog please?

Viewing 7 replies - 1 through 7 (of 7 total)
  • +1

    I was wondering why there were no updates for a long time for the plugin. When they released today without a proper changelog, I wondered. Came to here, found the vulnerability logs, the topics etc. As a paying Pro-Bundle customer I was not even aware of the situation for more than 3 weeks!!!

    I can expect there can be vulnerabilities, we are human not AI after all, however I can not believe users who downloaded the plugin and even paying customers are kept in the dark and were NOT informed.

    Also I did not like the fact that one developer clearly lies about the situation saying it is a “minor” problem in this topic, and then Ahmed – the lead developer admits that it is a huge vulnerability.

    The raised issues in here are very alarming. I do not understand if there are this much security issue, how did WordPress team let 100k+ active installs upto this point.

    I upgraded to the new version, assuming because it was released the bugs are corrected and checked by both the AmpforWP and WordPress teams but I am very skeptical and want an explanation!

    Plugin Contributor ampforwp

    (@ampforwp)

    @thompsonpaul,

    We have created the new file in our plugin directory with the name – changelog.txt and in that file, you can see the entire change log.

    Plugin Contributor ampforwp

    (@ampforwp)

    @ozgurtheg,

    It’s very sad to hear that you are unaware of this and we have updated the situation on our blog – https://ampforwp.com/explaining-the-this-plugin-was-closed-situation/ and we have also created the sticky note here on the forum as well.

    @ampforwp, @ahmedkaludi

    There is no need of me to visit your blog nor this forum to hear about this. Why would I visit “support” forum, if there is not a problem I am experiencing or your blog for that matter. You send a newsletter to my mail for every update, every discount, every new extension. You should have notified about this with an email – at least paying customers – who gives you a job.

    I am not satisfied with your reply. I want to hear from Ahmed explaining in every single detail about what was the problem, how is it fixed, how can I trust the future updates and how come www.remarpro.com did not find these vulnerabilities before? Sorry but not renewing my licence and will search for another plugin until I am satisfied.

    Plugin Contributor ampforwp

    (@ampforwp)

    Hi @ozgurtheg,

    Sorry for the inconvenience and one of our lead developers is writing down all the security fixes that we have done so far. Will get back to you very soon explaining everything.

    Plugin Contributor ampforwp

    (@ampforwp)

    @thompsonpaul and @ozgurtheg

    Here is the list of all the fixes which we have done to improve our plugin’s security – https://ampforwp.com/0-9-97-20-released-stability-update/

Viewing 7 replies - 1 through 7 (of 7 total)
  • The topic ‘Need properly updated changelog’ is closed to new replies.