I hade deleted all themes except twenty twenty-three.
I have disabled all plugins, including Wordfence.
When I upload Avada, I get an error message (screen shot), that a potentially unsafe operation has been detected on the site.
How can that be, when I have deactivated the plugin? Also, the staging site is not listed on the wodfence site on my dashboard.
Thanks
]]>A recent scan identified PageSpeed Ninja as potentially having malware.
File appears to be malicious or unsafe: …/public_html/wp-content/uploads/psn-pagespeed-ninja/cache/ea/ea1873f78f8bcacc55fdaff5c253e7e2887e81c7_js
File appears to be malicious or unsafe: …/public_html/wp-content/uploads/psn-pagespeed-ninja/cache/63/632e31382f3f75f0918622e2acf4109e05adbda4_js
Please advise. Thank you.
]]>This occurs, the scripts contains this function are blocked by Content Security Policy.
Then tables not load.
How to resolve this problem?
I don’t want use unsafe-eval or rule into Policy: script-src.
]]>However, now the plugin is making the site vulnerable to cross site scripting which allows a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.
Request you to address/justify the same at the earliest.
https://patchstack.com/database/vulnerability/wc-return-warrranty/wordpress-return-and-warranty-management-system-for-woocommerce-plugin-1-2-3-cross-site-scripting-xss-vulnerability?_a_id=431
]]>