theme

Feather12 Vulnerabilities

4 known security issues reported for the Feather12 WordPress theme. Most recent disclosed Aug 1, 2014.

1 critical

Running Feather12 on your site? Check whether your installed version is affected.

Scan your site free

Feather12 [feather12] < 1.1

unknown

The attack vector requires separate vulnerability at target site to conduct CS and XSS attacks with using of jPlayer. Also, there are a full path disclosure vulnerability in this theme. Update the theme.

Affected:
up to 1.1
Fixed in:
1.1
Disclosed:
Aug 1, 2014

Feather12 (Unkown Versions) - Multiple Vulnerabilities

critical

The Feather12 theme for WordPress is vulnerable to Cross-Site Scripting, Content Spoofing, and Path Traversal in all versions. This is due to inclusion of a vulnerable version of jPlayer. This makes it possible for unauthenticated attackers to inject arbitrary web scripts that execute in a victim's browser, create fake...

CVSS:
10
Affected:
up to *
Fix:
No patched version reported
Disclosed:
Apr 24, 2013

Feather12 [feather12] < 100 (unfixed + closed)

unknown

The Feather12 theme for WordPress is vulnerable to Cross-Site Scripting, Content Spoofing, and Path Traversal in all versions. This is due to inclusion of a vulnerable version of jPlayer. This makes it possible for unauthenticated attackers to inject arbitrary web scripts that execute in a victim's browser, create fake...

Affected:
up to 100
Fix:
No patched version reported
Disclosed:
Apr 24, 2013

Feather12 [feather12] < 100 (unfixed)

unknown

The feather12 WordPress theme was affected by a Multiple Script Direct Request Path Disclosure security vulnerability.

Affected:
up to 100
Fix:
No patched version reported

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database