Reflected Cross-Site Scripting (XSS) vulnerab

Posted in: Newsmag
Post count: 54

Hello, I received this advice form my ISP:
WordPress NewsMag theme <= 2.4.4 – Reflected Cross-Site Scripting (XSS) vulnerability
PLease, help to fix. Thanks
Asis

Post count: 20

Same issue here. Please advise.

Post count: 35449

Hi,
If you have a Newsmag theme that has v 2.4.4 or under that version my suggestion is to make a full backup for the website and database and after that to update the theme to the last version (v5.3).
Another suggestion is to use a plugin like this one https://wordpress.org/plugins/prevent-xss-vulnerability/
Thank you!

Post count: 20

Calin,

The interesting thing here is that I do have 5.3 installed and it is weird that WP Toolkit ( c-panel ) refer to 2.4.4.

Could it be that the theme folder might have files from the 2.4.4. version?

  • This reply was modified 3 years by halloway.
Post count: 54

Exacly the same issu, v 5.3

Post count: 20
Post count: 35449

Hello,
I understand. I have sent these details to the developers and they will check this situation as soon as possible.
Thank you!

Post count: 54

thanks very much.

Viewing 8 posts - 1 through 8 (of 8 total)
You must be logged in to reply to this topic.