Okay
  Public Ticket #1972420
What versions of YellowPencil are affected by the privilege escalation issue?
Closed

Comments

  • Jim started the conversation

    The description in the fix states the the vulnerability in version 7.2.0 has been fixed:

    https://yellowpencil.waspthemes.com/docs/important-security-update/

    We are currently running version 7.1.9 are we affected by it please?

  •  435
    David replied

    Yes, please update to 7.2.0 immediately.

    Best regards,
    WaspThemes team

    And don't forget to rate our plugin, it means a lot to us!

  • Jim replied

    Dear David

    Many thanks for the confirmation.

    I've started testing the updated plugin in our PPE.  I've noticed that the version number for the plugin is still 7.2.0 not 7.2.0v!

    I searched yellow-pencil.php for yp_remote_get_first and can't find it so I'm guessing this is the updated plugin.  Could you confirm please?

    Many thanks

    Jim

  •  435
    David replied

    That's all good, it's updated and you'll be safe now.

    Best regards!

    Best regards,
    WaspThemes team

    And don't forget to rate our plugin, it means a lot to us!