10 versions
Wpmu Dev Defender Pro history.
Every release of Wpmu Dev Defender Pro is archived here with its changelog, file size, and security scan result. Use the archive to roll back to a stable release or audit what changed between updates.
10 of 10 releases scanned clean
v6.2.4Latest
September 2, 20265.6 MBScanned
Fixed
- Username does not appear in some Audit Log events
- Audit module stores un-interpolated {{user_login}} in some logs
- Minor improvements in vulnerability detection
August 31, 20265.6 MBScanned
Added
- Improved Audit Log UI across Dashboard and Audit Log pages
- Added a "Save your API keys to load" preview state for Bot Protection CAPTCHA settings
- Updated the event type label in the detailed Audit Log view from 'Content' to 'Context'
Fixed
- Resolved an issue where audit log events from multi-event requests were not synchronizing to the Hub
- Fixed a UI layout issue when editing Nginx configuration under Hardening > Prevent Information Disclosure
- Addressed a deprecation notice for Webauthn::verify_response()
- Fixed a visual bug where the "Learn how we detect your IP" link overlapped the background border at 1280px screen widths
- Minor code improvements
v6.2.0Unavailable
August 19, 20265.6 MBScanned
Added
- Audit Log for Free Hub and WP.org users
- Compatibility with WordPress 7.1
- Replace PHP-DI third-party package with custom lightweight DI Container
- Display the Audit Log Storage retention setting
- Handle UI state when all scan types are disabled on the Settings page
- Update WPMU DEV domain in Audit service codebase
- Validate secret-key API response before writing to wp-config.php
- Improve toast message when attempting to disable the last enabled Malware Scan type
- Remove dash-notice submodule
- Ensure all scan status messages are displayed during scan progress
- Improving user communication while the site is connecting to the Hub
Fixed
- Clicking on 'View Logs' link does not filter Firewall Logs after the redirect
- Security improvements on Hub-Connector (props: Jakub Herman)
- Prevent adding duplicate recipient email addresses in Reports and Alerts
- Changing the default report template should not affect existing recipient(s) preferences
- Fix responsive layout issues on Dashboard, Two-Factor Auth and Other Settings plugin pages
- Reverting to Defender 5 causes JavaScript errors on the Notifications page
- Recipients don't receive email for all types of 'Firewall Alert' when a firewall lockout is enabled and triggered for XSS, Fake Bot, or 'Non-installed plugin lockout'
- Logs are displayed without timezone on Audit and Firewall log pages
- Improve Malware Alert and Report flow for 'always_send' and 'error_send' params
- Email notifications title issue with apostrophes
- The scheduled time notice does not show after the Free upgrade
- Defender Welcome Modal is displayed in wrong version
- 3 strings were not imported for translation due to emoji
- Unable to access the Custom Rules page
- Force Authentication is not restricted to roles enabled under User Roles
- Settings page layout breaks at 1280px with horizontal scrollbar
- Incorrect 'Enable Bot Protection' modal on disabled reCAPTCHA toggles
- Pagination remains visible after ignoring all files and only disappears after clicking a page
- Defender Audit Logs creates incorrect and duplicate entries when updating General Settings
- Minor code improvements
July 22, 20265.7 MBScanned
Added
- Improved compatibility of Central IP list status with Unlimited Hosting environments
- Extended Whitelabel support to cover Global Firewall branding
- User Agent lockout features reflected in the overall lockout count alongside 404 and Login lockouts
- Added tooltip for the "Security actions required" badge and confirmation notice after applying configuration presets
- Improved recipient name validation in Reports & Alerts and smarter alert scheduling for months with fewer than 31 days
- Users remain on the current page after connecting to the Hub
- Updated CVSS score handling for outdated plugin issues
- Updated Defender icon, configuration branding, dropdown design, and Hub Connector submodule
Fixed
- Resolved multiple v5 → v6 upgrade issues where notification, 2FA, and Usage Tracking settings were incorrectly reset or disabled
- Fixed errors triggered by third-party plugin conflicts and Notification model properties
- Fixed WP-CLI command handling, including duplicate scan lines and missing subcommands
- Resolved AntiBot and Bot Protection state issues, including Unlock Me button and feature activation modal
- Fixed Firewall Logs status filter, IPv6 Blocklist lookup, and custom IP block/allow list sync
- Fixed UI issues including pagination, file details panel truncation, and config dialog behavior
- Minor code improvements, PHP warning fixes, and performance refinements
v6.0.0Unavailable
July 7, 20265.7 MBScanned
Added
- Reimagined Defender interface for a seamless, clutter-free optimization experience
- Comprehensive Activity Log to track scans, optimizations, and configuration changes in real time
- Transitioned to real-time Auto-save for all settings to provide a frictionless workflow
Fixed
- Minor code improvements and performance refinements
March 31, 20265.0 MBScanned
Added
- Improvements to Audit Logging in both API and plugin
- Compatibility with WordPress 7.0
- Improve compliance with wp.org guidelines throughout the plugin
- Submit button activates without radio button selection on Deactivate modal
Fixed
- Error when Uninstall plugin settings are set to Delete value
- Console error when saving User Agent Banning changes
- Deprecated function warnings on PHP 8.5.X
February 27, 20265.0 MBScanned
Added
- Improve AntiBot Stats endpoint
- Improve handling of response data in the Audit API
- Update malware signatures
- Improve suspicious issue view on the Malware Scanning page
- Include selected presets in the User Agent blocklist during export
Fixed
- Error when filtering the Firewall logs
- Error when switching languages with WPML while Bot Trap is enabled
- Strong Passwords do not work when Mask Login URL is enabled
- Colored elements appear on Defender admin pages when High Contrast Mode is enabled
- Exported Firewall logs do not follow the selected sort order
v5.9.0Unavailable
January 28, 20265.1 MBScanned
Added
- WooCommerce and BuddyPress integrations in Cloudflare Turnstile
- Compatibility with PHP 8.4
- Update malware signatures
- Update ALTCHA functionality
- Improve plugin code style using PHPStan
- Refactor CAPTCHA file structure
- Add Thinkbot user agent to Blocklist Presets
- Display the readme file on the Malware Scanning page after it is renamed
- Add new "Outdated and closed plugin" key to the config structure
Fixed
- Prevent audit logs from being created when updating a user profile without changes
- Backslash character in salt generator can break the site
- Update copy for Mask URL block page
- Hide Settings > General > "More info" link when Whitelabel is enabled
- Inconsistent validation in CAPTCHA when the Preview test is not passed
- IP address and event type filters not working in the audit log export file
- Masked Login URL slug validation after activation
v5.8.0Unavailable
December 26, 20255.0 MBScanned
Added
- Detect suspicious code in JavaScript files during Malware Scanning
- Prevent false lockouts when requests contain mixed Facebook/Twitterbot user agents
- Update Axios and form-data package versions
- Update malware signatures
- Split Bulk checkboxes between tabs on Malware Scanning page
- Display Disconnect Site button on Defender’s general settings screen
- Improve plugin code style using PHPStan
- Improve UI for background Malware Scanning
- Restore reCAPTCHA class alias for backward compatibility
- Add new audit logging events
- Migrate notification events to the centralized Cron Manager
- Migrate common plugin events to the centralized Cron Manager
Fixed
- Update .htaccess rules for LiteSpeed servers
- Duplicate user agent records in robots.txt
- Extra space and hidden Google reCAPTCHA field shown on multisite registration page
- Duplicates of Ignored Scan issues
- Deprecation warnings from the thecodingmachine/safe package in PHP 8.4
- Quarantine activation link does not work in the free version
- Incorrect "Configure" button flow in the Firewall widget on the Dashboard
- UI improvements
Why archive
Sometimes the latest release isn't the one you need. The archive lets you pin Wpmu Dev Defender Pro to a known-good version, or roll back while a bug is investigated. Every release stays scanned and reachable.