Wordpress Themes - WP Forum at BFA
Click here to register or to donate.
Auto self-registration is not available here - far too many spammers. This forum has many, many backlinks and because of that there is an intense desire among spammers to drop their links here.

Wordpress Themes - WP Forum at BFA » WordPress Themes » Atahualpa 3 Wordpress theme » New Versions, & Updating »

Php 7.2


  #1  
Old Apr 25, 2019, 01:26 PM
thetravelchronicle
 
90 posts · May 2009
I just ran a PHP compatibility checker and got this warning in regard to Atahualpa:

"Use of deprecated PHP4 style class constructor is not supported since PHP 7."

If I've ever used a PHP4 style class constructor I didn't know about it. Since this is the only warning (re: Atahualpa), should I try updating my site's PHP version?
  #2  
Old Apr 27, 2019, 02:51 PM
juggledad's Avatar
juggledad
 
23,729 posts · Mar 2009
OSX 10.11.5 WP 4.x Atahualpa(all) Safari, Firefox, Chrome
I run with php7.2.6 and haven’t seen any problems
__________________
"Tell me and I forget, teach me and I may remember, involve me and I learn." - Benjamin Franklin
Juggledad | Forum Moderator/Support

Last edited by juggledad; Apr 28, 2019 at 08:20 AM.
  #3  
Old Jun 2, 2019, 01:20 PM
thetravelchronicle
 
90 posts · May 2009
Thanks for that. My host updated without me about two weeks later, and you eliminated any stress level.

Moving along, Sitelock tells me there is a theme vulnerability. For your information:

Atahualpa 3.7.24

Severity: Medium

Category: xss

Summary: Atahualpa Theme - Authenticated Cross-Site Scripting (XSS)

Description: Providing any of the following fields with string such as: "><script>alert(1);</script> results in the script element getting appended after the respective input element when the request returns from the server: "comment_feed_link", "home_cat_menu_bar", "email_subscribe_link", "home_single_next_prev", "email_subscribe_link_title", "feedburner_email_id", "excerpt_length", "page_menu_bar_link_color", "cat_menu_bar_background_color_parent", "cat_menu_bar_link_color", "left_col_pages_exclude", "widget_lists link-hover-color", "left_col2_cats_exclude" The solution to this issue is to encode as html all the user-provided parameters before they are returned to the browser.
  #4  
Old Jun 3, 2019, 01:53 PM
juggledad's Avatar
juggledad
 
23,729 posts · Mar 2009
OSX 10.11.5 WP 4.x Atahualpa(all) Safari, Firefox, Chrome
Hmmm yeah, I don't think that will ever be fixed unless someone wants to pay for the effort. Sorry.
__________________
"Tell me and I forget, teach me and I may remember, involve me and I learn." - Benjamin Franklin
Juggledad | Forum Moderator/Support

All times are GMT -6. The time now is 03:33 AM.


Powered by vBulletin® Copyright ©2000 - 2019, Jelsoft Enterprises Ltd.