• Resolved ideahost

    (@ideahost)


    I did a random search using the theme’s built in search utility in the header of the website. I was shocked to see the result showing one sender’s email – her message in full, including her phone number and inquiry. A private inquiry. This was via Contact Form 7 with Flamingo. How… How…?? A private sort of communication is now public because Flamingo exposes the email in search.

Viewing 4 replies - 1 through 4 (of 4 total)
  • Plugin Author Takayuki Miyoshi

    (@takayukister)

    Where can we see the website in question?

    Thread Starter ideahost

    (@ideahost)

    How do I sent the link privately… ?

    Plugin Author Takayuki Miyoshi

    (@takayukister)

    You can’t. This is a public support forum and asking for support privately is prohibited.

    Thread Starter ideahost

    (@ideahost)

    Well, I am not going to send the site. Anyone could use the search function and read the contact form emails in the truncated search results. This is a vulnerability!

Viewing 4 replies - 1 through 4 (of 4 total)
  • The topic ‘Sender msg APPEARS IN SEARCH’ is closed to new replies.