• Resolved samdobrow

    (@samdobrow)


    I received a warning to remove this plugin because it has been removed from WordPress. Is there a security risk? Why is this message displayed on the plugin page?

    This plugin has been closed as of July 8, 2024 and is not available for download. This closure is temporary, pending a full review.

Viewing 15 replies - 1 through 15 (of 16 total)
  • WP folks are waiting for a reaction from the developer.
    “Something” seems to be problematic with the code.
    The dev’s website is offline, so that is not a good sign I guess.
    Fingers crossed and let’s hope for the best for this nice plugin.
    After review of the new code, it should become available for download again.

    Plugin Author jamiebergen

    (@jamiebergen)

    I’m still here. I got a notice 2 days ago that I need to make an update to the plugin. I’ll try to get this done ASAP. Thanks for your patience.

    Thread Starter samdobrow

    (@samdobrow)

    I love this plug-in. It should be in core WP. Glad it will be fixed soon.

    Thanks for letting us know, Jamie!

    Plugin Author jamiebergen

    (@jamiebergen)

    Just an update that I’ve completed the fixes and resubmitted the plugin for review. We will have to wait for the review to be completed for them to reopen the plugin, but you can also find the updated version in the GitHub repo here: https://github.com/jamiebergen/plugin-notes-plus

    Thanks for your patience, and I’m glad that you’re finding the plugin useful!

    Any idea when this will be fixed?

    The average time for the WordPress team to review a plugin can range from a few hours to up to fourteen days, depending on the size, complexity, and potential code issues of the plugin.

    Plugin Author jamiebergen

    (@jamiebergen)

    Thanks to all of you for your patience. I responded to the review team promptly. It’s up to them to make a decision at this point. I hope they will open it back up soon, as I believe I have addressed the concern. The updated plugin is available on my GitHub repo: https://github.com/jamiebergen/plugin-notes-plus

    If a plugin is removed from the plugin directory due to a security issue, and the developer submits a patched version of the plugin in not time, it’s hard to understand that after almost a week the patched version still has not been reviewed and published. As a consequence, thousands of users are still running a version with a known vulnerability, since most of them are probably unaware of the problem.

    Jamie, I appreciate your quick response. Your plugin is very helpful, and we are running it on almost any of our clients’ sites.

    Plugin Author jamiebergen

    (@jamiebergen)

    The plugin is open!

    Thanks for the quick fix and the update Jamie!

    We’ll presume the WP review team was ± on vacation, hence the delayed review time. ??

    ??

    I just got the update for 1.2.8, but noticed the repo says it’s closed as of 7/31. Is there a new issue?

    NOOO! Closed again? :/

    Plugin Author jamiebergen

    (@jamiebergen)

    I was notified of another issue, which I addressed within a day. Now we’ll have to wait for the review team to take action. I’m not sure why the plugin is suddenly under increased scrutiny. Thanks for your patience again.

    You’re not the only one, the same thing happened to another plugin I’m using! Thanks for being on top of it.

Viewing 15 replies - 1 through 15 (of 16 total)
  • You must be logged in to reply to this topic.