Title: Plugin Vulnerability
Last modified: August 2, 2023

---

# Plugin Vulnerability

 *  Resolved [David](https://wordpress.org/support/users/dihetherington/)
 * (@dihetherington)
 * [2 years, 10 months ago](https://wordpress.org/support/topic/plugin-vulnerability-16/)
 * according to ithemes security there is a security vulnerability in the latest
   version. Are you working on a patch?

Viewing 5 replies - 1 through 5 (of 5 total)

 *  [jseutens](https://wordpress.org/support/users/jseutens/)
 * (@jseutens)
 * [2 years, 10 months ago](https://wordpress.org/support/topic/plugin-vulnerability-16/#post-16943319)
 * [https://ithemes.com/blog/wordpress-vulnerability-report-august-2-2023/#vulnerability-13711](https://ithemes.com/blog/wordpress-vulnerability-report-august-2-2023/#vulnerability-13711)
 *  Plugin Contributor [David G](https://wordpress.org/support/users/gravid7/)
 * (@gravid7)
 * [2 years, 10 months ago](https://wordpress.org/support/topic/plugin-vulnerability-16/#post-16946295)
 * Hi [@dihetherington](https://wordpress.org/support/users/dihetherington/) ,
 * Thank you for reaching out to us.
 * Could you please share screenshots of your configuration settings? Additionally,
   could you send me a list of active modules at your end?
 * This will allow us to check and assist you accordingly.
 *  [ucsendre](https://wordpress.org/support/users/ucsendre/)
 * (@ucsendre)
 * [2 years, 10 months ago](https://wordpress.org/support/topic/plugin-vulnerability-16/#post-16946518)
 * Hello [@gravid7](https://wordpress.org/support/users/gravid7/) ,
 * _YOUR_ code is [vulnerable](https://csrc.nist.gov/glossary/term/software_vulnerability)
   as it was reported by ithemes (see link above) and by [patchstack](https://patchstack.com/database/vulnerability/woocommerce-jetpack/wordpress-booster-for-woocommerce-plugin-7-0-0-shop-manager-arbitrary-option-update-vulnerability).
 * Please do not waste our time by asking unnecessary things from us but do look
   and fix the broken code which makes our websites open for exploits. ASAP please.
 * Thank xou!
 * Kindest regards,
   Endre
 *  Thread Starter [David](https://wordpress.org/support/users/dihetherington/)
 * (@dihetherington)
 * [2 years, 10 months ago](https://wordpress.org/support/topic/plugin-vulnerability-16/#post-16950508)
 * as suggested by ucsendre, this post is nothing to domwith my settings ithemes
   and now wordfence have reported security vulnerability which needs addressing.
   I have deactivated and deleted the plugin for now. Using code snippets instead
   to do.my customisations for now.
 * hope you resolve this ASAP or others will abandon your plugin.which would be 
   a pity.
 * kind regards
 * david
 *  Plugin Author [ronyp](https://wordpress.org/support/users/ronyp/)
 * (@ronyp)
 * [2 years, 10 months ago](https://wordpress.org/support/topic/plugin-vulnerability-16/#post-16959050)
 * Hello,
 * We have recently released a new version with a fix for the vulnerable to Broken
   Access Control.
   Kindly please upgrade your plugin for the same.
 * Kind Regards,
   RonyP

Viewing 5 replies - 1 through 5 (of 5 total)

The topic ‘Plugin Vulnerability’ is closed to new replies.

 * ![](https://ps.w.org/woocommerce-jetpack/assets/icon-256x256.png?rev=3351194)
 * [Booster for WooCommerce – PDF Invoices, Abandoned Cart, Variation Swatches & 100+ Tools](https://wordpress.org/plugins/woocommerce-jetpack/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/woocommerce-jetpack/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/woocommerce-jetpack/)
 * [Active Topics](https://wordpress.org/support/plugin/woocommerce-jetpack/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/woocommerce-jetpack/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/woocommerce-jetpack/reviews/)

 * 8 replies
 * 5 participants
 * Last reply from: [ronyp](https://wordpress.org/support/users/ronyp/)
 * Last activity: [2 years, 10 months ago](https://wordpress.org/support/topic/plugin-vulnerability-16/#post-16959050)
 * Status: resolved