Request to Update "ACF PRO" Plugin due to Security Vulnerability

Dear ThemeCo Support Team,

I hope this message finds you well.

I would like to bring to your attention a critical security vulnerability identified in the “Advanced Custom Fields PRO” plugin. According to the following sources, this vulnerability can expose sites to authenticated stored cross-site scripting (XSS) attacks:

It is highly recommended to update the plugin to version 6.3.6 or later to mitigate this risk. Could you please ensure that the ACF plugin in the theme is updated accordingly to ensure the safety of users?

Thank you for your attention to this matter. I look forward to your response and the necessary updates.

Best regards,
Tarek

Hey Tarek,

Thanks for reaching out!

I’ve sent your request to our admin to ensure that we will have the latest version of ACF but we cannot give ETA.

Hey There,

Version 6.3.6 is available via automatic updates. All the best!

Thank you !

1 Like

Hey Cairo,

You’re most welcome!

This topic was automatically closed 10 days after the last reply. New replies are no longer allowed.