Page 1 of 1

twentyfourteen hacked?

Posted: 13 Jun 2016, 10:32
by jmginer
All the twentyfourteen in my server are detected as exploit.

Is true?

Content of the file

cxs[163898]: ['/home/xxx/public_html/wp-content/themes/twentyfourteen/js/featured-content-admin.js'] - Suspected exploit file

Code: Select all

/**
 * Twenty Fourteen Featured Content admin behavior: add a tag suggestion
 * when changing the tag.
 */
/* global ajaxurl:true */

jQuery( document ).ready( function( $ ) {
        $( '#customize-control-featured-content-tag-name input' ).suggest( ajaxurl + '?action=ajax-tag-search&tax=post_tag', { delay: 500, minchars: 2 } );
});

Re: twentyfourteen hacked?

Posted: 04 Jul 2016, 15:55
by Grindlay
If you don't use the theme, delete it. If you do, keep it updated. Haven't seen any other reports of a similar nature.