Vulnerability

#602751
Viewing 4 replies - 1 through 4 (of 4 total)
  • Hello,

    Appreciate you following up on this. First of all, thanks for responsibly disclosing this and allowing us time to fix the issue.

    Allow me to clear the points:

    1. We released a plugin update with a fix on 18th May, 3 days after it was disclosed. The same is mentioned in our changelog and we have given a shoutout to PatckStack as well: https://rankmath.com/changelog/

    2. We have already provided you with the plugin files on the same day we released an update (18th May 2023). It was sent to the same email ID you are using to create this ticket.

    3. I am attaching the latest plugin files in the sensitive data section of this ticket so you can validate the patch in case you missed our email.

    Do not hesitate to let us know if you have any questions.

    Anonymous
    Rank Math free

    [MOVED TO THE SENSITIVE DATA SECTION]

    Hello,

    There appears to have been a small misunderstanding.

    However, the issue is already reported to the dev and we’ll get back to you soon with an update.

    Rest assured that we took this issue seriously and we’re looking forward to fixing this with high priority.

    Thank you for your cooperation.

    Hello,

    That is very odd. We cannot find any records of Ticket #573971 with us. We only have #573970 and that was related to the PRO version, which we already fixed.

    We would request you to please defer revealing the vulnerability for 2 more weeks. We are working on an update on a priority basis and will roll it out ASAP.

    In the future, please consider emailing us on s******@r*********** because that email ID is monitored actively and is a better medium for disclosing sensitive information rather than on public support forums. Though, kudos for adding it to the sensitive data section, really appreciate it.

    Once again, thank you so much for informing us about the vulnerability.

    Hello,

    Since we did not hear back from you for 15 days, we are assuming that you found the solution. We are closing this support ticket.

    If you still need assistance or any other help, please feel free to open a new support ticket, and we will be more than happy to assist.

    Thank you.

Viewing 4 replies - 1 through 4 (of 4 total)

The ticket ‘Vulnerability’ is closed to new replies.