<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="bbPress/1.0.2" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title>Support Forum - Tag: cross-site scripting attack - Recent Posts</title>
		<link>http://www.kriesi.at/support/tags/cross-site-scripting-attack</link>
		<description>Support Forum - Tag: cross-site scripting attack - Recent Posts</description>
		<language>en-US</language>
		<pubDate>Thu, 20 Jun 2013 11:52:58 +0000</pubDate>
		<generator>http://bbpress.org/?v=1.0.2</generator>
		<textInput>
			<title><![CDATA[Search]]></title>
			<description><![CDATA[Search all topics from these forums.]]></description>
			<name>q</name>
			<link>http://www.kriesi.at/support/search.php</link>
		</textInput>
		<atom:link href="http://www.kriesi.at/support/rss/tags/cross-site-scripting-attack" rel="self" type="application/rss+xml" />

		<item>
			<title>Kriesi on "Broadscope theme vulnerable to Cross-site scripting attacks?"</title>
			<link>http://www.kriesi.at/support/topic/broadscope-theme-vulnerable-to-cross-site-scripting-attacks#post-81704</link>
			<pubDate>Wed, 31 Oct 2012 14:36:49 +0000</pubDate>
			<dc:creator>Kriesi</dc:creator>
			<guid isPermaLink="false">81704@http://www.kriesi.at/support/</guid>
			<description>&#60;p&#62;Hi! &#60;/p&#62;
&#60;p&#62; I am aware and the updates are already in the pipeline, once they are approved from themeforest you will be able to download them ;) &#60;/p&#62;
&#60;p&#62; Regards,&#60;br /&#62;
Kriesi
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Dude on "Broadscope theme vulnerable to Cross-site scripting attacks?"</title>
			<link>http://www.kriesi.at/support/topic/broadscope-theme-vulnerable-to-cross-site-scripting-attacks#post-81693</link>
			<pubDate>Wed, 31 Oct 2012 13:29:14 +0000</pubDate>
			<dc:creator>Dude</dc:creator>
			<guid isPermaLink="false">81693@http://www.kriesi.at/support/</guid>
			<description>&#60;p&#62;Hi! &#60;/p&#62;
&#60;p&#62; See: &#60;a href=&#34;http://www.kriesi.at/support/topic/xss&#34; rel=&#34;nofollow&#34;&#62;http://www.kriesi.at/support/topic/xss&#60;/a&#62; &#60;/p&#62;
&#60;p&#62; Best regards,&#60;br /&#62;
Peter
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Mya on "Broadscope theme vulnerable to Cross-site scripting attacks?"</title>
			<link>http://www.kriesi.at/support/topic/broadscope-theme-vulnerable-to-cross-site-scripting-attacks#post-81683</link>
			<pubDate>Wed, 31 Oct 2012 13:08:04 +0000</pubDate>
			<dc:creator>Mya</dc:creator>
			<guid isPermaLink="false">81683@http://www.kriesi.at/support/</guid>
			<description>&#60;p&#62;Hi greensleeves,&#60;/p&#62;
&#60;p&#62;I believe Kriesi is already aware of the issues Janne presents but just in case I'm tagging Kriesi as well as the rest of the support team to this thread.&#60;/p&#62;
&#60;p&#62;Regards,&#60;br /&#62;
Mya
&#60;/p&#62;</description>
		</item>
		<item>
			<title>greensleeves32 on "Broadscope theme vulnerable to Cross-site scripting attacks?"</title>
			<link>http://www.kriesi.at/support/topic/broadscope-theme-vulnerable-to-cross-site-scripting-attacks#post-81506</link>
			<pubDate>Tue, 30 Oct 2012 05:31:52 +0000</pubDate>
			<dc:creator>greensleeves32</dc:creator>
			<guid isPermaLink="false">81506@http://www.kriesi.at/support/</guid>
			<description>&#60;p&#62;I recently got this message from a stranger via my contact form on my website (www.dancinshoesdj.com). Is there anything to it?&#60;/p&#62;
&#60;p&#62;I'm a Finnish security researcher. This site is vulnerable to reflected Cross-site Scripting attacks. Please see my web-site - latest blog entry - about the issue that affects multiple themes by Kriesi.&#60;/p&#62;
&#60;p&#62;I would have posted this information to Kriesi\'s support forum, but I\'m not their customer and therefore cannot login. I feel I must now contact some vulnerable sites, because you have the possibility to ask for corrections from the developer.&#60;/p&#62;
&#60;p&#62;Kind Regards,&#60;br /&#62;
Janne Ahlberg&#60;br /&#62;
&#60;a href=&#34;http://jannefi.blogspot.fi/&#34; rel=&#34;nofollow&#34;&#62;http://jannefi.blogspot.fi/&#60;/a&#62;
&#60;/p&#62;</description>
		</item>

	</channel>
</rss>
