BoldGrid / boldgrid-backup

The Total Upkeep plugin.
GNU General Public License v2.0
11 stars 9 forks source link

Reported Security Issue #596

Closed jamesros161 closed 3 months ago

jamesros161 commented 3 months ago

We've received a report from a third party concerning a security vulnerability in your plugin. Your plugin has not yet been closed, however if in the next 30 days the issue remains unpatched or we receive no communication we will be forced to close the plugin due to inaction.

Here's what you need to do:

  1. Vulnerability Remediation:
    • Thoroughly review this email and the report included below.
    • Implement necessary code modifications to eliminate the vulnerability.
    • Address any additional similar concerns identified.
  2. Perform a Security Review:
    • Conduct a comprehensive security and WordPress coding standards review of your plugin's codebase.
    • Utilize the Plugin Check Plugin as a tool to identify and rectify any issues: https://wordpress.org/plugins/plugin-check/
    • We expect all issues detected by Plugin Check Plugin will be resolved before you resubmit the plugin for review.
  3. Plugin Update:
    • Increment your plugin's version number.
    • Update the "Tested up to" version within your readme.txt file to reflect the latest WordPress release.
  4. Submit the Update:
  5. Reply to this email to request a re-review.

Important Considerations:

Vulnerability Report

jamesros161 commented 3 months ago

Vulnerability report was invalid. Disputed the report with Patchstack and it was rejected.