We're Moving to a New Support Platform – Starting June 1st!
We’re excited to let you know that starting June 1st, we’ll be transitioning to a new support system that will be available directly on our product websites – Amelia, wpDataTables, and Report Builder. In fact, the new support platform is already live for Amelia and wpDataTables, and we encourage you to reach out to us there.
You'll always be able to reach us through a widget in the bottom right corner of each website, where you can ask questions, report issues, or simply get assistance.
While we still do not offer live support, a new advanced, AI-powered assistant, trained on our documentation, use cases, and real conversations with our team, is there to help with basic to intermediate questions in no time.
We're doing our best to make this transition smooth and hassle-free. After June 1st, this current support website will redirect you to the new "Contact Us" pages on our product sites.
Thanks for your continued support and trust – we’re excited to bring you an even better support experience!
Hi!
we noticed that we can easily bypass any and all security feature of wordpress once we have access to a publicly readable table.
We can only substitue the ID by a new ID and we have access to the table, and bypassing wordpress security :-(
This is a major security threat to our web site.
Would it be possible for WPdatatable to generate and use GUID (UUID) instead of sequential digits as table descriptor?
Thanks!
Hello Yves
Thanks for pointing this out to us.
Unfortunately, I'm not quite sure how to reproduce the issue.
Can you, please explain in a bit more detail, and I will forward it to our development team for testing.
Kind Regards,
Aleksandar Vuković
[email protected]
Rate my support
wpDataTables: FAQ | Facebook | Twitter | Instagram | Front-end and back-end demo | Docs
Amelia: FAQ | Facebook | Twitter | Instagram | Amelia demo sites | Docs | Discord Community
You can try wpDataTables add-ons before purchasing on these sandbox sites:
Powerful Filters | Gravity Forms Integration for wpDataTables | Formidable Forms Integration for wpDataTables | Master-Detail Tables
Hi!
we can use wp-admin/admin-ajax.php?action=get_wdtable&table_id=13 or wp-admin/admin-ajax.php?action=get_wdtable&table_id=XXX
which will give us the content of any table.
FYI: we will open a CVE on 2020.03.20 to disclose this vulnerability.
Thanks!
Yves
Thank you Yves
Our developers checked this out, and it turns out it happens only for Server-Side tables. They will work on resolving the issue as soon as possible.
Once again - thank you for pointing that out to us! Much appreciated.
Kind Regards,
Aleksandar Vuković
[email protected]
Rate my support
wpDataTables: FAQ | Facebook | Twitter | Instagram | Front-end and back-end demo | Docs
Amelia: FAQ | Facebook | Twitter | Instagram | Amelia demo sites | Docs | Discord Community
You can try wpDataTables add-ons before purchasing on these sandbox sites:
Powerful Filters | Gravity Forms Integration for wpDataTables | Formidable Forms Integration for wpDataTables | Master-Detail Tables