Title: Security Issue
Last modified: September 28, 2025

---

# Security Issue

 *  Resolved [Kevin Forster](https://wordpress.org/support/users/vegancake/)
 * (@vegancake)
 * [8 months, 2 weeks ago](https://wordpress.org/support/topic/security-issue-189/)
 * Hi, Installed your plug-in yesterday and all is working as it should BUT Jetpack
   is advising me:
 * The installed version of Disable Admin Notices Individually (1.3.6) has a known
   security vulnerability.
 * Do you have a fix planned? Seems a shame to disable the plugin that works…..
 * Thanks
    -  This topic was modified 8 months, 2 weeks ago by [Kevin Forster](https://wordpress.org/support/users/vegancake/).
 * The page I need help with: _[[log in](https://login.wordpress.org/?redirect_to=https%3A%2F%2Fwordpress.org%2Fsupport%2Ftopic%2Fsecurity-issue-189%2F%3Foutput_format%3Dmd&locale=en_US)
   to see the link]_

Viewing 5 replies - 1 through 5 (of 5 total)

 *  [KittyFlynn](https://wordpress.org/support/users/macwillard/)
 * (@macwillard)
 * [7 months, 3 weeks ago](https://wordpress.org/support/topic/security-issue-189/#post-18686891)
 * Wordfence is also warning about a critical security failure with Disable 🙁
 *  Plugin Support [Stefan Cotitosu](https://wordpress.org/support/users/stefancotitosu/)
 * (@stefancotitosu)
 * [7 months, 3 weeks ago](https://wordpress.org/support/topic/security-issue-189/#post-18687427)
 * Hi [@vegancake](https://wordpress.org/support/users/vegancake/), [@macwillard](https://wordpress.org/support/users/macwillard/),
 * Thank you for taking the time to report this issue and helping us keep the plugin
   secure. Our development team is working on a fix and will include it in the next
   release.
 * Best regards,
 *  [iconet](https://wordpress.org/support/users/iconet/)
 * (@iconet)
 * [7 months, 3 weeks ago](https://wordpress.org/support/topic/security-issue-189/#post-18692711)
 * I would like to inform you about a security issue reported by my website’s security
   plugin regarding “Disable Admin Notices individually”. The vulnerability affects
   all versions up to 1.3.6 and has been publicly disclosed as a Cross Site Request
   Forgery (CSRF) (CVE-2024-52420).
 * Currently, there is no fix available for this vulnerability, and the only recommended
   mitigation is to deactivate the plugin. This situation is concerning for users
   who rely on your plugin for WordPress administration.
 * Could you please provide an update on when a security patch will be released,
   or if there are any temporary mitigation steps we could apply to maintain security
   while using your plugin?
 * Best regards,
 * Antonio
 *  [dmac](https://wordpress.org/support/users/darrenmcentee/)
 * (@darrenmcentee)
 * [7 months, 1 week ago](https://wordpress.org/support/topic/security-issue-189/#post-18708365)
 * Hi, it’s been over a month now since the vulnerability has been reported. I see
   a fix has still not been released. Can you please clarify your fixed status urgently.
 *  [Vytis](https://wordpress.org/support/users/bvytis/)
 * (@bvytis)
 * [7 months ago](https://wordpress.org/support/topic/security-issue-189/#post-18711090)
 * Hi [@vegancake](https://wordpress.org/support/users/vegancake/) [@darrenmcentee](https://wordpress.org/support/users/darrenmcentee/)
   [@iconet](https://wordpress.org/support/users/iconet/) [@macwillard](https://wordpress.org/support/users/macwillard/),
   
   The vulnerability was already patched with the latest release, we also informed
   the security channels to verify it so should soon disappear from warnings like
   those you see from Wordfence.Thank you for your patience.

Viewing 5 replies - 1 through 5 (of 5 total)

The topic ‘Security Issue’ is closed to new replies.

 * ![](https://ps.w.org/disable-admin-notices/assets/icon-256x256.gif?rev=3548083)
 * [Disable Admin Notices - Hide Dashboard Notifications](https://wordpress.org/plugins/disable-admin-notices/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/disable-admin-notices/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/disable-admin-notices/)
 * [Active Topics](https://wordpress.org/support/plugin/disable-admin-notices/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/disable-admin-notices/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/disable-admin-notices/reviews/)

 * 8 replies
 * 6 participants
 * Last reply from: [Vytis](https://wordpress.org/support/users/bvytis/)
 * Last activity: [7 months ago](https://wordpress.org/support/topic/security-issue-189/#post-18711090)
 * Status: resolved