WordPress tagDiv Composer plugin < 3.5 – Unauthenticated Account Takeover vulner

Posted in: Newsmag
Post count: 54

Please, help with this:

The following vulnerabilities are currently being addressed by the WordPress Toolkit in accordance with the site’s auto-update policy:

Acción de directiva Sitio Vulnerabilidad
Actualizar diarioelectronicohoy.com WordPress tagDiv Composer plugin < 3.5 – Unauthenticated Account Takeover vulnerability

Thanks in advanced.

Post count: 35449

Hi,
The problem has been resolved in that version, unfortunately, most of the security plugins are using the < 3.5 not <=. -> https://wpscan.com/vulnerability/993a95d2-6fce-48de-ae17-06ce2db829ef
What I can recommend is to manually change the version of the plugin from 3.5 to 3.6 or delete the plugin and reinstall it from Newsmag> plugins, should come with v3.6 to avoid security plugin complaints.
Thank you!

Post count: 54

I am sorry but, after 10 minutes, I am not able to find the plugin. `please, could you be so kind to send me a direct link to download? thanks in advanced.

Post count: 35449

Hi,
You need to go into plugins and delete the tagDiv Composer, after that, please go to Newspaper > plugins and install the plugin from that place.
Thank you!

Post count: 54

ok, I’ll do in this way.
Thanks very much.

Viewing 5 posts - 1 through 5 (of 5 total)
The forum ‘Newsmag’ is closed to new topics and replies.