Maybe use external2 or blue bypass instead? Thats maybe why I'm suggesting to use other bypasses that don't force cvars???
A presentation created with Slides. A Talk by Ashar Javed. IX OWASP Spain Chapter Meeting. 12th June 2015, Barcelona (Spain) InfiniteWP, WP Time Capsule, and WP Database Reset are all affected. The highest-impact flaw is an authentication bypass vulnerability in the InfiniteWP Client, a plugin installed on more than 300,000 websites. It allows administrators to manage multiple websites from a single server.