• Resolved Momekh

    (@momekh)


    Copying so a fresher case can be made (initially posted at this thread).

    I got an email 5 minutes ago, saying:

    Alert generated at Wednesday 3rd of September 2014 at 04:59:27 AM

    Warnings:

    * Modified plugin file: wp-content/plugins/akismet/readme.txt

    Is it the same repo mirror confusion? Or should I run for the hills? I dont like hills.

    https://wordpress.org/plugins/wordfence/

Viewing 15 replies - 1 through 15 (of 16 total)
  • Thanks Momekh

    As mentioned earlier, this may be related to an issue I sent Mark’s way. I’ll let you know as soon as I find out.

    tim

    Can you try and see if a scan works now? I want to see if this fixes the issue.

    Thanks!

    tim

    Greetings,

    I have also received this warning from Wordfence:

    Warnings:

    * Modified plugin file: wp-content/plugins/akismet/readme.txt

    The changed file is:

    Original: Tested up to: 4.0
    Changed to: Tested up to: 3.9.2

    Is that weird?

    I’ve reverted it to the original.

    Can you look at the actual file and verify it now says its tested to 3.9.2? Did you do any updates to Akismet lately?

    One thing that stands out to me is that it might be a legit change. WordPress is at 3.9.2 There isn’t a WordPress 4.0 yet.

    tim

    WP 4.0 is a RC, the change to the readme file is legit.

    WordPress 4.0 Release Candidate

    Thread Starter Momekh

    (@momekh)

    Prodos, thanks for that. Although I haven’t checked if those were the changes made on my side.

    But on the whole, what are we saying here? That Akismet’s Readme file _was_ written for 4.0, and then later was updated to read the correct WP version?

    And that readme file changed in WordFence repo,and because of that change, a warning was issued?

    I shudder to think that akismet automagically changed the readme file on my installation and then wordfence caught that?

    Thanks y’all for the comments so far.

    I’m betting that the Akismet authors changed the readme file to refelect the version its tested up to (4.0). Your version says 3.9.2 because thats the last version they had tested to when you installed the plugin.

    tim

    WF Support writes:

    Can you look at the actual file and verify it now says its tested to 3.9.2? Did you do any updates to Akismet lately?

    Checking wp-content/plugins/akismet/readme.txt … it says:

    “Tested up to: 4.0”

    Best Wishes,

    PRODOS

    So it’s still alerting there is a change? That’s what the repository file says.
    If it says it should say 3.9.2 then I need to take this to Mark for review. If you don’t mind, confirm the error so I’m not sending him on a wild goose chase πŸ™‚

    Thanks!

    tim

    WFSupport wrote:

    So it’s still alerting there is a change? That’s what the repository file says.
    If it says it should say 3.9.2 then I need to take this to Mark for review. If you don’t mind, confirm the error so I’m not sending him on a wild goose chase πŸ™‚

    I ran another scan and received no alerts or warnings:

    “Congratulations! You have no security issues on your site.”

    (Need to sign out now … it’s after 2 am here in Melbourne)

    Best Wishes,

    PRODOS

    I just got this same warning message after a Wordfence scan.

    Modified plugin file: wp-content/plugins/akismet/readme.txt

    Could someone tell me if this is something I should be concerned about?

    It appears from what I can figure out, in the last day the akismet developers updated the plugin to say “Tested up to 4.0” but did not push out a new plugin version. Mine still shows “Tested up to 3.9.2”. This is why Wordfence is finding a discrepancy.

    How do I fix this? Thanks.

    Mine says the same Tested up to 3.9.2

    Do these type of modifications happen when we do updates or is it cause the wp 4.0 update? Would it be ok to ignore those problems? What do I do…

    Thanks for your help πŸ™‚

    I think this is safe to ignore or you can manually update it by removing the plugin and adding it back from WordPress.org Its really your call.

    I hope this helps. πŸ™‚

    tim

    The issue is the akismet developers changed the read.txt file to indicate the plugin is compatible up to WP 4.0 (in anticipation of the release of WP 4.0) but did not do a plugin update. So until they do, Wordfence will flag it as a file discrepancy in your files.

    You can either update the plugin manually or ignore it until the plugin is updated. I chose to ignore it for now.

Viewing 15 replies - 1 through 15 (of 16 total)
  • The topic ‘Repost: akismet readme file changed?’ is closed to new replies.