Themes Vulnerabilities

Akal Theme - Reflected Cross-Site Scripting (XSS)

Description

The premium theme, Akal, suffers from a Reflected Cross-Site Scripting (XSS) vulnerability in the preview.php file located in framework/brad-shortcodes/tinymce.

Proof of Concept

Affects Themes

No known fix

References

Classification

Type
XSS
CWE

Miscellaneous

Submitter
Jan Reilink
Submitter website
Submitter twitter
Verified
No

Timeline

Publicly Published
2016-08-22 (about 9 years ago)
Added
2016-08-22 (about 9 years ago)
Last Updated
2020-09-22 (about 5 years ago)

Other