Vulnerabilities in Mimbo Pro theme for WordPress

0
52

Posted by MustLive on Apr 14

Hello list!

I want to warn you about Cross-Site Scripting, Full path disclosure, Abuse
of Functionality and Denial of Service vulnerabilities in Mimbo Pro theme
for WordPress. It's commercial theme for WP by developer of TimThumb.

————————-
Affected products:
————————-

Vulnerable are Mimbo Pro 2.3.1 and previous versions. XSS is possible only
in old versions of the theme. After my informing, developer have…

Source: Vulnerabilities in Mimbo Pro theme for WordPress