Cross Site Request Forgery

Homepage Community Forums Oasis Theme Support Cross Site Request Forgery

  • This topic has 1 reply, 2 voices, and was last updated 5 months ago by Wes.
Viewing 2 posts - 1 through 2 (of 2 total)
  • Author
    Posts
  • #28052
    Lucinda Heller
    Customer

      My Security plugin keeps saying my THEME has Vulnerabilities. Here is the error message.
      Known Vulnerabilities
      WordPress Oasis theme <= 1.0.12 – Cross Site Request Forgery (CSRF) vulnerability

      please help!

      #28055
      Wes
      Moderator

        Hmmm, that could be a false alarm, some plugins give these errors by mistake. Unless some custom code or something was added inside the theme or to your site admin. You can always upgrade to the newer version to see if that fixes the issue if you want. The version you’re using is from a few years ago.

        You can also try and disable any other plugins you’re using to see if there may be some type of conflict.

        I seriously doubt it’s anything to worry about just based on how these Child themes are built, but if you want to upgrade to the newer better version you have that option. The new version is a Full Site Editor (FSE) based theme built with Gutenberg/Blocks and doesn’t require the Genesis Framework – https://appfinite.com/shop/oasis

      Viewing 2 posts - 1 through 2 (of 2 total)
      • You must be logged in to reply to this topic.