Reflected Cross-site Scripting vulnerability – tagDiv Composer plugin < 4.0 0

Posted in: Newspaper
Post count: 364

Could you comment?

I’ve got the result by Itheme Security Scan:

“WordPress tagDiv Composer plugin < 4.0 – Reflected Cross-site Scripting vulnerability”

My version of NewsPaper = Version: 12.3.1
Itheme Securitty = Version 8.1.6

screenshot – https://prnt.sc/NzLnZ5_YDd6H

Post count: 27744

Hi,

Please deactivate, delete, and reinstall tagDiv Composer from Newspaper plugins => https://www.screencast.com/t/OrzLvR2j and clear all cache.
There was no issue, there were issues with the plugin version only https://forum.tagdiv.com/topic/jetpack-alert-about-td-composer-vulnerability/

Thank you!

Post count: 364

I’ve got a result after disable – delete – install new version of add-on tagDiv Composer

Error thrown
Class ‘td_util’ not found
========
Next Page refresh show me Plugins page – /wp-admin/admin.php?page=td_theme_plugins

site works fine
Itheme Security told me – it’s ok.

Post count: 27744

Hi,

So, there is an error or not?

Thank you!

Post count: 364

It was error after activation.
But when I run page refresh – this error was disappeared.

Post count: 27744

Hi,

I’m glad you resolved it.

Have a great day!

Viewing 6 posts - 1 through 6 (of 6 total)
The forum ‘Newspaper’ is closed to new topics and replies.