Vulnerability issue with tagDiv Cloud Library v3.9.2

Posted in: Newspaper
Post count: 5

Hi, hope you can check this.

Vulnerability issue.

Cross Site Scripting (XSS)
vulnerability discovered by
João Pedro S Alcântara
(Kinorth) in WordPress Plugin
tagDiv Cloud Library
(versions < 3.9.2)

tagDiv Cloud Library vulnerability issue

tagDiv Cloud Library vulnerability issue

Any update?
Thanks in advance.

  • This topic was modified 9 months by just_nAnO.
  • This topic was modified 9 months by just_nAnO.
Post count: 35449

Hi,

As you can see in the patchstack, the vulnerability is only present in versions prior to version 3.9.2. https://i.imgur.com/VIhPXwj.png

Thank you!

Post count: 3

i haev same problem

Post count: 3

please we need to fix this ASAP

Post count: 35449

Hi Kayyali Mohamed,

If you have Newspaper version 12.7.3 then the problem is resolved. If you have a different theme version, please make a backup of your website and update the theme.

Thank you!

Post count: 3

even we have last version of the theme we still get same error

Post count: 35449

I understand, it is possible that some tools do not interpret < 3.9.2 correctly, they may interpret it as <= 3.9.2. What can be done is to manually change the version of the plugin https://i.imgur.com/UCoxmI2.png

Viewing 7 posts - 1 through 7 (of 7 total)
The forum ‘Newspaper’ is closed to new topics and replies.