• Hi, Pleskians! We are running a UX testing of our upcoming product intended for server management and monitoring.
    We would like to invite you to have a call with us and have some fun checking our prototype. The agenda is pretty simple - we bring new design and some scenarios that you need to walk through and succeed. We will be watching and taking insights for further development of the design.
    If you would like to participate, please use this link to book a meeting. We will sent the link to the clickable prototype at the meeting.
  • (Plesk for Windows):
    MySQL Connector/ODBC 3.51, 5.1, and 5.3 are no longer shipped with Plesk because they have reached end of life. MariaDB Connector/ODBC 64-bit 3.2.4 is now used instead.
  • The Horde webmail has been deprecated. Its complete removal is scheduled for April 2025. For details and recommended actions, see the Feature and Deprecation Plan.

Issue WP Toolkit reporting vulnerabilities for wrong version of theme

maestroit

New Pleskian
Server operating system version
Debian 11.9
Plesk version and microupdate number
18.0.59 Update #2,
After the latest update, I started seeing that WP Toolkit is reporting that my Themify Ultra theme v7.6.2 has few high severity rating vulnerabilities, when I clicked to see what are those I found that the report is for the Themify version <= 7.3.5, which I am not using !! (Check attached screenshot)

Does the Toolkit detect the version in a wrong way? How can this be solved?
 

Attachments

  • themify ultra wrong version.jpg
    themify ultra wrong version.jpg
    292.7 KB · Views: 18
Update:

I installed Plesk v18.0.60 but it is still the same:
PatchStack DB says the vulnerabilities have been fixed, WordFence DB doesn't !!!
 
I've the same problem with some plugins, example here with Real3D Flipbook 3.83, signaled as vulnerable by Wordfence database... but for version <=1.0.0 !!!

I hope the future WP Toolkit update will fix these issues soon...
 

Attachments

  • 1713861687565.png
    1713861687565.png
    53.9 KB · Views: 6
  • 1713861792856.png
    1713861792856.png
    5.8 KB · Views: 6
After waiting 20 days with no solution from WP Toolkit or WordFence, I contacted WordFence support ( wfi-support _at_ wordfence.com ), with the issue in question, and they marked it as Fixed in few hours.
 
Hi guys,

We're reporting these issues to Wordfence on a regular basis, but some reports, like this thread, get lost for some reason -- sorry about that. We'll see how we can ensure that no reports are lost and everything is submitted to Wordfence.
 
Back
Top