V6.2 prevents premium plugin updates

I updated my sites to v6.2 and can no longer update premium plugins from the dashboard or directly on the child site. I rolled back to 6.1.8 on the child site and can update premium plugins again. I have tested multiple premium plugins across vendors with the same result.

WP 7.0.4
PHP 8.3

Hey @7thcircle

In 6.2, we introduced a new Premium Updates page under MainWP > Settings > Premium Updates, along with changes to premium-update handling. We’ve reviewed those changes, but haven’t confirmed what’s causing the failures you’re seeing directly on the child sites.

1/
Was your MainWP Dashboard also running 6.2 when this happened, and did it remain on that version after you rolled MainWP Child back to 6.1.8?

2/
Please test with both MainWP Dashboard and MainWP Child on 6.2, using just one affected child site initially.

3/
Also, before upgrading, were you using the premium-plugin compatibility snippets from this guide, through the Custom Dashboard Add-on, functions.php, or another method?

I do have all of the premium plugins listed using the code snippet in the custom dashboard and they have been working prior to 6.2

Both the dashboard and child MainWP plugin were at 6.2.

The part that makes no sense is that when I go to the child site directly and try and run the premium plugin update it fails with 6.2 but if I roll back to 6.1.8 it works.

I have started the process of adding the premium plugins that were missing to the new premium updates page and will try the update again tonight.

I have added all of the current premium plugins to the new section and then tested the update for ACF PRO on 1 site and get the below error. This plugin I was able to go to the child site itself and run the update.

ERROR on the child site: Unauthorized access.

There are no errors in the child or dashboard logs.

@7thcircle

Thanks, that error helps narrow this down.

In 6.2, we added an additional permissions check when MainWP requests a premium update.

It checks for WordPress’s manage_options permission, which administrator accounts normally have. MainWP Child returns “Unauthorized access” if that permission check fails during the request.

Do you currently have any other premium plugins with updates pending on an affected child site?

If so, please open a support ticket so we can take a closer look while an update is still available and investigate why that check is failing.

All site admins have the manage-options permission. The other piece that may help is all of the affected sites so far run Redis Object Cache (some are Pro) and all of them run Redis Page Cache as well. I tested by clearing the cache and I can run the updates on the child site if I am on the child site but the update sin the dashboard are hit or miss. I will open a ticket and get you a site with a premium plugin to test.

That may be a indeed a useful clue. We will investigate further.

Great, thank you.

I have rolled back to 6.1.8 across my entire fleet because updates for premium plugins are broken and having to update them manually by logging into each site is not viable at scale. If it was possible to update 1 site and test it might be a different story.

@7thcircle

Sorry to hear that.

We haven’t been able to reproduce this on our Dashboards yet, but we are still investigating.

If you’d like, please do open a private ticket so we can examine your setup.