WPIntell

Source evidence

Known Vulnerability

Testimonial Slider · support · 2021-12-02T07:08:00+00:00

mixedsentiment
highseverity
0.89relevance
1replies
Evidence linked to opportunitycommercial context

Proof Health

Open evidence

Commercial opportunities need traceable source links before they are treated as build-worthy.

6 / 31 rows with source links

19.4% of this page's analysis has direct source links.

0 build-decision rows missing links

0 rows here require auditable proof before promotion.

25 rows with no attached evidence

0 rows have source counts but still need direct links.

Conversation

support
jamesb303 resolved
Is there any sign of continuing life support for this plugin? iThemes Security Pro keeps spitting out this warning: Known Vulnerabilities Testimonial Slider <= 1.2.1 – Authenticated Stored Cross-Site Scripting (XSS) & CSRF Note that when I log in the version I have is 1.3.1 not 1.2.1. Either way it’s giving this error and causing me concern. The page I need help with: [ log in to see the link] Hi, Please report the problem to iThemes Security Pro. As you say, the current plugin version is 1.3.1. We don’t have any particular relationship with them, so can’t tell you what might be up with their tool. The specific defect “Testimonial Slider <= 1.2.1 – Authenticated Stored Cross-Site Scripting (XSS) & CSRF” was fixed when I took up this abandoned plugin – specifically to fix that and another problem. David

Comments

1 shown
David Anderson / Team Updraft 2022-03-29T14:58:00+00:00

Hi, Please report the problem to iThemes Security Pro. As you say, the current plugin version is 1.3.1. We don’t have any particular relationship with them, so can’t tell you what might be up with their tool. The specific defect “Testimonial Slider <= 1.2.1 – Authenticated Stored Cross-Site Scripting (XSS) & CSRF” was fixed when I took up this abandoned plugin – specifically to fix that and another problem. David