Posted by MustLive on Apr 14
Hello list!
I want to warn you about Cross-Site Scripting, Full path disclosure, Abuse
of Functionality and Denial of Service vulnerabilities in Mimbo Pro theme
for WordPress. It's commercial theme for WP by developer of TimThumb.
————————-
Affected products:
————————-
Vulnerable are Mimbo Pro 2.3.1 and previous versions. XSS is possible only
in old versions of the theme. After my informing, developer have…




