5.294
- 2026-08-02
- FIX: Vulnerability Scanner - Local vulnerability database files are stored compressed so host malware scanners no longer false-positive on known-issue descriptions (e.g. wp-config). Thank you Lee.
- FIX: Compatibility - Imposter-prefixed vendor autoload no longer claims unprefixed chillerlan namespaces, fixing a fatal when LatePoint (and similar plugins) generate booking QR codes. Thank you Daniel.
- FIX: Core Scanner - Scheduled (cron) scans no longer fail with "Insufficient permissions". Manual scans were fine; background runs now complete as expected. Thank you Mirco.
- IMPROVED: Cloud Firewall - Faster visitor checks with less DNS and disk work on each page load.
- IMPROVED: Vulnerability Scanner - Lighter scheduled vulnerability list updates with lower memory use.
- FIX: AI Security Advisor - Prevent a critical error on Overview when WordPress AI Client connector checks fail (e.g. TypeError from getModelMetadataMap). Admin stays usable; thank you Tyson.
- FIX: AI Security Advisor - WordPress Abilities register on plugin load so REST and other AI tools can discover them reliably.
- FIX: AI Security Advisor - Abilities load their data when invoked outside the Advisor screen (no fatal on REST/MCP calls).
- IMPROVED: AI Security Advisor - WordPress Abilities exposure is on by default for new installs (can be turned off in AI settings). […]