Mick Levin on "[Plugin: Wordfence Security] URGENT: XSS in v.5.2.2"
Hello, Reddit ProWordPress just published this Security report, which lists Wordfence 5.2.2 as having an XSS vulnerability. http://www.reddit.com/tb/2g33f0 Please review....
View ArticleWordfence on "[Plugin: Wordfence Security] WordFence constantly corrupts +...
Hi David, (I edited this after posting it for clarity - see marked paragraph) This looks like an issue with your server. Please read the following article on the mysql docs site:...
View ArticleWordfence on "[Plugin: Wordfence Security] wp_wfHoover is 43GB !!!!"
Hi Martin, Tim alerted me to this issue. Please make sure that the user that WordPress is using to access your MySQL has permissions to either truncate or "delete from" the table. You can go ahead and...
View ArticleWordfence on "noc3.wordfence.com"
Hi Simon, Replied to your emails. Just wanted to add a note that noc3 is running fine and I'm working this issue with Simon via email so marking this resolved. Regards, Mark.
View ArticleWFSupport on "[Plugin: Wordfence Security] 620 MB of cached files, how can I...
Hi Again, can you see if the page has a specific url like http://www.domain.com/calendar? You can exclude that from the cache if it does. And great suggestion! I'll pass that to the feature request...
View ArticleWFSupport on "[Plugin: Wordfence Security] URGENT: XSS in v.5.2.2"
Escalating to dev team right now. Thanks for the heads up! One of the best things about WF is our community. You guys are awesome. tim
View Articleskubeedoo on "[Plugin: Wordfence Security] What is this deleteme file and...
I got this error message when I ran wordfence: This file may contain malicious executable code: .../wp-content/deleteme.########################.php What is this file and what action should I take?...
View ArticleWordfence on "[Plugin: Wordfence Security] URGENT: XSS in v.5.2.2"
Thanks Mick. The release that went out this evening fixes this issue - that's version 5.2.3 - along with a few other nice improvements like a newer country database. For someone to exploit this they'd...
View ArticleWFSupport on "[Plugin: Wordfence Security] Falcon truncate .htaccess file...
@holmpage We're sorry you are having issues. Can you open a new post with your information so it doesn't get over looked in this one, marked resolved for the original poster? Feel free to reference...
View ArticleWFSupport on "[Plugin: Wordfence Security] What is this deleteme file and...
Hi Great question! Thanks for asking. I found several references online to those files being created by Installatron that looks to be a tool offered by hosting providers who have 'one click'...
View ArticleWFSupport on "[Plugin: Wordfence Security] Wordfence takes 2.18 seconds to load"
Hi Thanks for asking! Let's see if we can help By any chance is live traffic scan enabled? Tim
View ArticleWordfence on "[Plugin: Wordfence Security] Truncated .htaccess"
Hi @holmpage The issue you're experiencing is identical in every way to an issue we fixed in an earlier version. I've read the thread above and it looks like you aren't sure which version you were...
View ArticleIceHotCold on "[Plugin: Wordfence Security] No Plugin Index file - Opens to...
Hi Just had scanner warnings sent to me. Checked out and it's the same as a week ago I had already fixed. Fixed by uninstalling and reinstalling new plugin. The error was evil and something else saying...
View Articlezzzmuzz on "[Plugin: Wordfence Security] Deleted htaccess"
The wordfence "backup" of htaccess removed all of the contents from that file. My .htaccess read: # BEGIN WordPress <IfModule mod_rewrite.c> RewriteEngine On RewriteBase / RewriteRule...
View Articleholmpage on "[Plugin: Wordfence Security] Truncated .htaccess"
Will do. Thanks for looking into it and I will let you know if it happens again.
View ArticleWFSupport on "[Plugin: Wordfence Security] Deleted htaccess"
HI Sorry you had an issue with the plugin. Can you verify the version of the plugin and whether this happened after enabling caching or not? If so, which version did you enable? Thanks! tim
View ArticleWordPress core file modified: wp-includes/version.php"">ChangeAgent on "[Plugin: Wordfence Security] WP GB version reports>WordPress...
I have the GB version of WP installed and it keeps reporting that it finds an error in WordPress namely: core file modified: wp-includes/version.php Line 37 that is being flagged reads...
View ArticlesleeplessinDC on "[Plugin: Wordfence Security] Why is every graphics file...
Why does WordFence list every graphic file or other file in the wp-content/uploads or graphics in plugin folders as a non-existent page? The Live Traffic report shows where the reference came from and...
View Articleapostlepoe on "[Plugin: Wordfence Security] Live Traffic, Scan, Block IP not...
Hi, Sorry. WordPress 3.9.2. WordFence 5.2.3. The "Live Traffic", "Scan" and "Block IP" features do not "work" for me. For instance, when I select "Live Traffic", the screen appears, but the "box" which...
View Article