Viewing 2 replies - 1 through 2 (of 2 total)
  • Plugin Author Hugh Lashbrooke

    (@hlashbrooke)

    Thanks for bringing this up – it does indeed need to be fixed and I have just patched it in the latest release of the plugin (v1.3.2).

    To be fair, however, those URLs are only accessible to logged in administrators, so even without this patch it’s highly unlikely that this would have ever caused a problem ??

    Thanks,
    Hugh

    Thread Starter KTS915

    (@kts915)

    I did wonder about that. Thanks for doing this!

Viewing 2 replies - 1 through 2 (of 2 total)
  • The topic ‘XSS Vulnerability’ is closed to new replies.