• Resolved anonymized-14293447

    (@anonymized-14293447)


    …the login URLs are exposed even if the plugin is active and anyone can get to that page. Needs urgent fix.

Viewing 5 replies - 1 through 5 (of 5 total)
  • @arsenalemusica Can you share with us a screenshot?

    Or try this troubleshooting https://www.seedprod.com/docs/troubleshooting/

    Thread Starter anonymized-14293447

    (@anonymized-14293447)

    it’s very simple, my maintenance-mode page shows all right but if I type /wp-admin in the URL the site shows WordPress login page. It’s nothing to do with my installation, this is a bug.
    I can only defend myself with a custom login page (from another plugin).

    @arsenalemusica By default we exclude URLs with the terms: login, admin, dashboard, and account to prevent lockouts.

    Thread Starter anonymized-14293447

    (@anonymized-14293447)

    @pmakabenta ok, but those wp-admin and wp-login are also the most attacked urls, and if you leave them open I really don’t see the advantage in having an under-maintenance page

    @arsenalemusica Sorry for the late response.

    If that is the case, that is possible to our Pro plan. See here https://a.supportally.com/Gnecsh

Viewing 5 replies - 1 through 5 (of 5 total)

The topic ‘wp-admin is exposed’ is closed to new replies.