The 1Password Community forums are in read-only mode from Jan 28th - Feb 4th, 2025. Find out more.

What to do?

dhjdhj
dhjdhj
Community Member

I am at a loss? Please see attachment (bottom part (1Password app) tells me there's a vulnerability at a particular site but if I click on the warning to get more info (upper part is web browser), you have NOTHING.


1Password Version: Latest
Extension Version: Not Provided
OS Version: Yosemite
Sync Type: Not Provided

Comments

  • littlebobbytables
    littlebobbytables
    1Password Alumni

    Hi @dhjdhj,

    We do have an inconsistency in how the information is being presented in 1Password for Mac compared to the Watchtower site. We don't have a record for account.activestate.com but we do have a record in Watchtower for activestate.com relating to CVE-2014-3704 (Drupal SQL Injection). The confusion is 1Password for Mac checked not just the subdomain but also the domain and then reported this as vulnerable without making it clear where the vulnerability was. You can check the status of the domain using this link. Based on this it might be prudent to change your password for your account.activestate.com entry. It is on the TO-DO list to make sure the two match up better so I apologise for the confusion while we work this out.

    ref: OPM-3003

  • dhjdhj
    dhjdhj
    Community Member

    OK --- didn't notice the server/subdomain. Glad you are addressing this though.

  • littlebobbytables
    littlebobbytables
    1Password Alumni

    Hi @dhjdhj,

    I wouldn't expect many people at all to pick up on that, it is no means obvious in the slightest. I had this nagging memory that I'd seen a bug report, that's why I appeared somewhat knowledgeable :wink: I'm just glad we could at least explain what you're seeing.

    If you have any other questions do please let us know :smile:

This discussion has been closed.