Does version 1.9.3 fix the Stored XSS issue affecting ≤ 1.9.0?
Jetpack warning:
Vulnerable plugin: WP Last Modified Info (version 1.9.3)
Vulnerability Severity: 6.4/10.0 (Medium).
It appears that the security vulnerability has not yet been fixed.
I hope the plugin author reads these messages
I also got the security notification in my Wordfence
Howdy folks! Feel free to check here, for an update:
https://wpscan.com/plugin/wp-last-modified-info/
The XSS vulnerability was fixed, when version 1.9.3 was released. I hope this helps!
Wordfence is still flagging this as a serious security issue as of 6 hours ago, even in 1.9.4
-
This reply was modified 4 months, 2 weeks ago by
paulherzlich.