Feature Request: Auto-update vulnerable plugins based on config
-
I use Wordfence on many sites, and I keep auto-updates disabled for all plugins to avoid downtime or unexpected visual/functional issues. I have a dedicated priority email address where I receive all Wordfence alerts, and I update vulnerable plugins as quickly as possible based on the severity.
Today I had an idea: it would be so useful to have an option in Wordfence that, after a scan, automatically updates plugins with known vulnerabilities if their severity meets a defined threshold.
For example, a setting like “Auto-update vulnerable plugins” could be enabled via a checkbox. Once enabled, you could choose the update criteria based on either “Rating” or “Score.” If “Rating” is selected, you could choose levels like “Critical”, “High”, etc. If “Score” is selected, you could specify a value between 0.0 and 10.0.
In this setup, Wordfence would automatically update only those plugins that meet the defined vulnerability threshold immediately after a scan completes, which would make Wordfence even more powerful and let me sleep a lot better.
Is this something that might be implemented in the future, or should I build a custom solution for it?
You must be logged in to reply to this topic.