XStore < 9.3.9 – Unauthenticated Local File Inclusion

This topic has 4 replies, 2 voices, and was last updated 1 weeks ago ago by Rose Tyler

  • Avatar: FPA
    FPA
    Participant
    February 17, 2025 at 17:33

    Hi,
    My host warns me about a security issue with XStrore 9.3.9.
    Please read my PM and confirm if the vulnerability is fixed with 9.4.0 or not?

    Content is visible for topic creator and
    support staff only.
    3 Answers
    Avatar: Rose Tyler
    Rose Tyler
    Support staff
    February 18, 2025 at 08:16

    Hello,

    Thank you for reaching out to us.

    We would recommend using the latest theme version – 9.4.7 and the core plugin – 5.4.7 version.

    Regarding your inquiry about security vulnerabilities in the XSTORE CORE plugin, we have addressed and resolved these issues in the Version 9.3.9 / Core plugin 5.3.9 (Security Update) https://xstore.8theme.com/update-history/. For more details, please read our response here: [Security Update on XSTORE CORE] https://www.8theme.com/topic/urgent-vulnerability-in-xstore-is-it-solved/#post-396635

    Best regards,
    8Theme’s Team

    Avatar: FPA
    FPA
    Participant
    February 18, 2025 at 14:06

    Hello,
    Very much appreciated!

    Avatar: Rose Tyler
    Rose Tyler
    Support staff
    February 18, 2025 at 14:45

    Hello,

    You’re welcome!

    Best regards,
    8Theme’s Team

  • Viewing 4 results - 1 through 4 (of 4 total)

The issue related to '‘XStore < 9.3.9 – Unauthenticated Local File Inclusion’' has been successfully resolved, and the topic is now closed for further responses

We're using our own and third-party cookies to improve your experience and our website. Keep on browsing to accept our cookie policy.