User Role Editor Pro version 4.18.4

User Role Editor Pro version 4.18.4 was published at May 28th, 2015.

The list of changes

  • Bug fix: Edit posts/pages restrictions add-on: Now user can not edit prohibited post/page manually inserting its ID to the edit URL.
  • Admin menu access add-on: ‘Customize’ menu item is available now for non-English WordPress default languages too.

User Role Editor Pro version 4.18.3

User Role Editor Pro version 4.18.3 was published at May 6th, 2015.
The list of changes:

  • Bug fix for “Admin menu access” add-on: direct access to the wp-admin/customize.php link (Appearance->Customize menu item) was not blocked properly.
    As additional security measure “Welcome” panel is removed for the role with access restriction to the “Customize” admin menu item.

User Role Editor Pro 4.18.2

User Role Editor Pro version 4.18.2 was published at April 30th, 2015.
The list of changes:

  • Calls to the functions add_query_arg(), remove_query_arg() are escaped with esc_url_raw() to exclude potential XSS vulnerabilities, as suggested at
    https://developer.wordpress.org/reference/functions/add_query_arg/

WooCommerce admin bar and dashboard access

Do you wonder why some users at WooCommerce enabled site have access to the top admin bar and WordPress admin dashboard, but some users don’t?
It is by design: WooCommerce plugin developers decided for us for whom they allow access to WordPress admin dashboard and for whom they prohibit it. But thanks them for the professionalism – it is possible to change that default WooCommerce logic via special filters. Read more WooCommerce admin bar and dashboard access