Version comparison bug?
-
I am seeing version numbers that should be green…. listed as vulnerabilities in red.
I think it’s a version comparison bug in Site Protection itself.
I have an installed Broken Link Checker version 1.10.9
And yet, this is the text on the right column:
IN RED
Broken Link Checker 1.9.1 – Bulk Action Form URL Handling XSS (fixed in 1.9.2)
No external information found about this vulnerabilty.Broken Link Checker 1.9.1 – Sort Direction Query Argument Handling XSS (fixed in 1.9.2)
No external information found about this vulnerabilty.AND THEN IN GREEN
Broken Link Checker 1.10.1 – Authenticated Stored XSS (fixed in 1.10.2)
https://www.ads-software.com/plugins/broken-link-checker/changelog/Broken Link Checker <= 1.10.5 – CSRF/XSS (fixed in 1.10.6)
https://blog.sucuri.net/2015/04/security-advisory-xss-vulnerability-affecting-multiple-wordpress-plugins.htmlBroken Link Checker <= 1.10.8 – Unauthenticated Persistent XSS (fixed in 1.10.9)
No external information found about this vulnerabilty.It appears the 9 is thought to be larger than the 10.
Also, “vulnerabilty” is misspelled throughout.
Thanks, this is a great plugin.
https://www.ads-software.com/plugins/umbrella-antivirus-hack-protection/
- The topic ‘Version comparison bug?’ is closed to new replies.