• Resolved gecko_guy

    (@gecko_guy)


    Hey guys,

    I am a fan of your plugin as you know (I hope you know anyway, since I have posted a few questions now!).

    “Critical Bug”. What does this mean?

    Does it mean the plugin is not, or was not, secure?

    It’s critical to keep people updated if there is a vulnerability, it’s critical to advise people if there is a known breach, it’s critical to let people know if the plugin is the cause of a serious conflict in the core.

    Since this is a “security” plugin of a kind, and membership, and the trust of members is truly critical to a business, then it is all about trust.

    Posting an update saying “fixed: critical bug with profile menu tabs / system”, causes alarm (mild concern).

    There is no indication of what this serious and critical vulnerability was, just that it has been fixed.

    So, have people been exposed to a potential breach?

    No? Well when I hear that a plugin I use for logging in to my site, and preventing nasty people from spamming or otherwise being a pest has fixed some kind of unknown “Critical Bug”, then it erodes my confidence in the product.

    If it is not a truly “critical” fix, then please don’t raise an alarm, or if it is truly a critical fix, then please provide us with enough information so that if there has been a breach we might be able to identify/investigate the source/cause, and take the appropriate measures to repair any damage.

    Thanks

    Guy

    https://www.ads-software.com/plugins/ultimate-member/

Viewing 3 replies - 1 through 3 (of 3 total)
  • Plugin Author Ultimate Member

    (@ultimatemember)

    Hi Guy, apologies if this has caused alarm. No security breach with this. Just a bad bug that was causing profile menus not to appear. We will be more careful with our choice of words on the changelog in the future.

    Thanks!

    Thread Starter gecko_guy

    (@gecko_guy)

    Thanks for listening. I wasn’t all that worried since I can tell you guys are one the ball, but choice of words when it comes to security is very important.

    I really appreciate your time to respond, and thanks as always for your kind support.

    Plugin Author Ultimate Member

    (@ultimatemember)

    You’re very welcome, we’ll be very clear on security patches/releases if any in the future. Sorry for the wrong word.

Viewing 3 replies - 1 through 3 (of 3 total)
  • The topic ‘"Critical Bug Fix" What does that mean?’ is closed to new replies.