• Resolved wzshop

    (@wzshop)


    Hi,
    Wordfence alerted me of a security issue with profilepress 3.1. So I updated the plugin, but all of a sudden I found that an unknown administrator was added to my website.
    Now, could that be something that has was a vulnerability of profilepress 3.1? I am just trying to understand how this could have happened and I am hoping for an honest answer.

    Thanks

Viewing 2 replies - 1 through 2 (of 2 total)
  • Plugin Author Collins Agbonghama

    (@collizo4sky)

    I can’t say for sure if that was through ProfilePress.

    But there are chances this could be from any other plugin, theme or someone with your login created another admin.

    Thread Starter wzshop

    (@wzshop)

    Hi,
    Thanks for being honest.
    I understand that a malicious theme/plugin could have done the trick or someone with my login credentials, but assuming that I did not pass on my login credentials to someone else and I use solid themes and plugins, it it very likely that your plugin caused the issue. That’s disappointing, but I was able to fix the issue though.

Viewing 2 replies - 1 through 2 (of 2 total)

The topic ‘Security issues, honest answer?’ is closed to new replies.