• Resolved Dave

    (@csn123)


    I’ve received an email from WordPress Toolkit:

    WordPress Toolkit has detected known vulnerabilities on WordPress sites under your care. It is strongly recommended to update or disable vulnerable assets on these sites. You can also configure WordPress Toolkit to perform automatic actions when vulnerabilities are detected. The following vulnerabilities need your attention because they have to be addressed manually:

    WordPress wpDataTables plugin <= 3.4.1 – Multiple SQL Injection (SQLi) vulnerabilities

    The latest version appears to be 2.1.28, which we are running. I can’t see a version greater than this.

    Is this a false positive by WordPress Toolkit, or does this relate to the premium version of wpDataTables?

Viewing 2 replies - 1 through 2 (of 2 total)
  • Plugin Author wpDataTables

    (@wpdatatables)

    Hey Dave,

    Thank you for reaching out to us.

    This vulnerability relates to the premium version of wpDataTables. All versions before 3.4.1 were affected, but this vulnerability was solved with later releases.

    Lite versions were never affected, but they are being detected since they share the same slug. When Lite updates to a version above 3.4.1 these notices will not be sent anymore.

    Kind regards!

    Hi wpDataTables

    Are you able to update the Lite version to a version above 3.4.1 soon, as I get daily reports and emails about the vulnerability, because it is based on the number being below 3.4.1. That would be much appreciated.

    I understand the lite version wasn’t affected, but it is annoying to get these emails about it.

    Regards

Viewing 2 replies - 1 through 2 (of 2 total)
  • The topic ‘WordPress Toolkit Alert’ is closed to new replies.