AI Search
Classic Search
Notifications
Clear all
May 06, 2026 7:19 am
Hi guys, we're getting urgent security notices from our host and we can't change to 3.x. Help and thanks!
https://wpscan.com/vulnerability/f72469d8-610b-4e93-bf09-8ee21527c9af/
https://wpscan.com/vulnerability/b53b3c24-2f20-434c-9dec-a2b5794189cc/
https://wpscan.com/vulnerability/40e2fa92-969f-478b-b16d-a049b6bf1adf/
https://wpscan.com/vulnerability/2542ddfd-251c-44f7-b247-c33c6f1aaf3a/

Dean • 14m
High and medium severity on 4 different security vulnerabilities all affecting less than version 3.0.0
4 Replies
May 06, 2026 1:36 pm
You've already been asnwered here: https://wordpress.org/support/topic/wpforo-2-4-17-vulnerability/
May 10, 2026 11:57 pm
Hi @hoop-ball,
Could you please explain why you cannot switch to wpForo 3.x? It has been designed to have near to zero impact on update. Even the 2.x theme has not been changed and you can continue to use it after update by simple switching from 2026 to 2022 in wpForo > Themes admin page. There is no any blocker or hard change in 3.x that will bring you problems.
May 17, 2026 1:55 am
Honestly we just didn't have the manpower/resources to vet it. We bumped it up the priority chain and got there, finding what you found.