Hello @webdocdisain,
The latest release supported by WordPress 4.9 is Contact Form 7 v5.1.9. You’ll need to upgrade your WordPress installation to the latest version if you want to receive the new Contact Form 7 updates.
Best regards,
Yordan.
That i know. Just version minor update is what i asked is it coming or 25% of sites global may be hacked soon
Hello @webdocdisain,
Just version minor update is what i asked is it coming
Plugin updates are not handled by versions tag separately, like WordPress, so you need to update your WordPress installation before upgrading to the latest version of Contact Form 7, if you want to enjoy the last features and improvements.
The author has solved the issue, now it’s up to you to update your software: that’s your responsibility.
25% of sites global may be hacked soon
This issue only affects forms that use file upload fields. If you don’t have a file field in your forms, you have nothing to worry about.
On the other hand, Contact Form 7 does not store files in the directory, but deletes them immediately after sending. So, in practice it’s not possible for a script to be executed because it’s sent and deleted immediately afterwards.
However, you can modify the includes/formatting.php file adding the new change manually, if you want to be sure.
Best regards,
Yordan.