WP Cerber 9.9.5 is out

WP Cerber 9.9.5 is out

We’ve released WP Cerber 9.9.5, a focused update that makes it easier to understand why WP Cerber made a particular security decision and then get straight to the setting behind it.

The most visible change is in the Activity log. When an event explainer points to a role-based policy, the Manage link now opens the correct role tab, scrolls to the exact setting, and highlights it. The setting is centered in the browser window as well, so the WordPress admin bar no longer gets in the way.

We also fixed a bug where only the first of several role-policy links on the Activity log page could jump to its setting.

On the security side, this release tightens how URLs are validated and escaped before they are rendered in the WordPress admin area. The new handling rejects unsupported and ambiguous URL forms while preserving valid non-ASCII paths.

There are a couple of admin-side fixes and internal reliability improvements too. The Mail Transport section now renders its availability link correctly, and WP Cerber has started storing admin announcements as structured, validated data instead of rendered HTML.

If you’ve enabled automatic updates in WP Cerber’s settings, you’re likely already on version 9.9.5. If not, you can install the update manually from the Plugins page in your WordPress dashboard.

2 Likes