• Like others, I’ve had multiple warnings from security platform about a ‘Missing Authorization to DataTable Access & Modification’ vulnerability in the free version 6.3.2. Just checked the full site changelog and there have been 15 subsequent releases, all to the paid version. 6.3.2 is from 22/04/24. Smells like a concerted effort to get free user base to upgrade, or am I being cynical….? I was directed here by wpDataTables AI bot that suggested I provide feedback here.

    • This topic was modified 11 months, 2 weeks ago by Yui.
    • This topic was modified 11 months, 2 weeks ago by dozza. Reason: remove link
Viewing 4 replies - 1 through 4 (of 4 total)
  • Plugin Support Milos Jovanovic

    (@milosjovanovicwpdt)

    Hello @dozza,

    Thank you for taking the time to share your feedback — we truly appreciate you bringing this up.

    Please allow us to clarify the situation:

    The security warning you’re seeing is a false positive. There were confirmed vulnerabilities in older Premium versions of wpDataTables (up to version 6.3.2), and those have since been fully patched. The current Premium version is 7.3, and you can always view the full changelog here:
    👉 https://wpdatatables.com/help/whats-new-changelog/

    However, the Lite (free) version was never affected — the reported vulnerabilities were related to features that exist only in the Premium plugin (such as SQL-based tables). These features simply don’t exist in the Lite version, so the free plugin was never at risk.

    Unfortunately, since both versions of our plugin share the same slug (wpdatatables), some security scanners are unable to distinguish between Lite and Premium. As a result, they sometimes flag the Lite version based on Premium-related reports — even when it’s not applicable.

    To help resolve this confusion, our developers are preparing a new Lite update that skips version numbers and will go above 6.3.2. This will stop the false-positive alerts and provide peace of mind to users like yourself who raised concerns.

    We can assure you that this is not an attempt to push free users toward the Premium version — the only reason behind the version jump is to address these inaccurate security reports, based on feedback from the Lite user community.

    If you have any further questions or concerns, please don’t hesitate to reach out to our Support team directly through the chat on our website — we’re happy to help.

    In the meantime, we hope you might consider revisiting your review, as the Lite version is safe to use and has never included the reported vulnerabilities.

    Kind regards,
    Milos

    Thread Starter dozza

    (@dozza)

    Milos

    In that case, please accept my apologies for defaming your team’s efforts. I was only going on the information presented and your AI Bot, which wasn’t too helpful.

    If I could change the start rating I would. Thanks for the response and deeper insight.

    Thread Starter dozza

    (@dozza)

    I can, and have!

    Plugin Support Milos Jovanovic

    (@milosjovanovicwpdt)

    Hello @dozza,

    No need to apologize—we completely understand, and it’s clear that the confusion stemmed from how our AI bot handled the situation.

    The bot is still learning, and there’s still a lot we need to fine-tune behind the scenes to ensure it delivers more helpful and accurate responses. Feedback like yours helps us recognize where to improve, and we truly appreciate that.

    Thank you again for your kind reconsideration and for updating the review—it genuinely means a lot to our team.

    If anything else comes up, you’re always welcome to create a new support post here, or reach out via the chat box on our main wpDataTables website. And if the bot doesn’t provide the right information, feel free to ask for human support—one of our agents will gladly step in as soon as possible.

    Thanks again!

    Kind regards,
    Milos

Viewing 4 replies - 1 through 4 (of 4 total)

The topic ‘Maintaining a vulnerability?’ is closed to new replies.