Tagdiv Composer issue

Posted in: Newspaper
Post count: 21

Hi,
I received a message from BlogVault abour the vulnerability of Tagdiv Composer 5.4.4:

“The The tagDiv Composer plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 5.4.4. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes.”

Please advise.

Thank you!

Post count: 20685

Hi,

There were a few issues in the previous composer version, we fixed them in the latest update -> https://tagdiv.com/newspaper-changelog/ In case you are using an older version, please update the theme. The composer is now version 5.4.5 and the theme is 12.7.6.

Thank you!

Viewing 2 posts - 1 through 2 (of 2 total)
You must be logged in to reply to this topic.