If you are running 4.10.10.p then this should already be fixed on your site and confirming this is fairly simple if you have FTP or File Manager access.
On the site go to /wp-content/plugins/event-espresso-core-reg/admin_pages/messages/templates/
Do you see an ee_msg_admin_overview.template.php file there? (You shouldn’t) If not, the above is a false positive.
(I’ve already tested your site using the proof of concept provided and didn’t reproduce, so I think this is correct, but you should check all the same)
Without meaning for this to come across the wrong way, 4.10.10.p was released December 10th, 2020 and you’ve been running it on the site since at least then so I’d say 10 days is unlikely to change anything. I do, however, recommend you update when you can do so 🙂
Hi Tony, very helpful, thank you for checking & for your feedback.
Kind regards
Dee
Viewing 2 reply threads
The support post ‘WPEngine's notice: vulnerable version of the Event Espresso Core plugin ?’ is closed to new replies.
Have a question about this support post? Create a new support post in our support forums and include a link to this existing support post so we can help you.
Support forum for Event Espresso 3 and Event Espresso 4.