Tagged: vaultpress
-
AuthorPosts
-
May 9, 2016 at 7:49 pm #629448
Hello!
I recently subscribed to the VaultPress service and they report the following:WT.ShortCode.Exploit
A security vulnerability was discovered in the WooThemes framework. Please update it to the version 5.3.12 or greater and remove the file preview-shortcode-external.php if it remains in your theme.The file affected is /wp-content/themes/enfold/framework/php/avia_shortcodes.
I have verified that the site in question is running the latest version of Enfold: 3.5.4
I’m assuming their finding is a false positive but thought I should let you know before. Do I need to take any corrective action?
Thank you!
James Geiger
May 11, 2016 at 10:56 am #630586Hey jamesgeiger,
Thank you for bringing this up with us.
Please provide more details about what is the exact security vulnerability that has been found so we can further troubleshoot it. You can post it in the private content.
Best regards,
VinayMay 11, 2016 at 3:12 pm #630755Hello Vinay,
VaultPress reports exactly the wording I sent previously, but I’ve placed that wording in the Private Content below:
Sincerely,
Jim Geiger
May 12, 2016 at 3:05 pm #631415Hi,
Thank you for getting back to us with the details. This issue is reported to Kriesi please await his reply. In the meantime let us know if the woocommerce is updated to the latest version.
UPDATE: I just had a word with my team regarding this and the warning turns out to be a false positive. Just make sure your plugins are updated :)
Best regards,
Vinay-
This reply was modified 9 years, 5 months ago by
Vinay.
May 12, 2016 at 3:07 pm #631416 -
This reply was modified 9 years, 5 months ago by
-
AuthorPosts
- You must be logged in to reply to this topic.
