Posts by StephenCronin

172 posts
  • Envato Team
  • Football Player
  • 3 Years of Membership
  • Exclusive Author
+1 more
StephenCronin
Envato team
says

Hi Stephen,

Thanks for your help, we fixed the bug in the current developing version of AURA.

I have moved it back to soft-disabled so that you can upload a new version etc. :)

we couldn’t find it under our hidden items of our profile. can you please check it?

Kind Regards,

Carlo Carlos.

Hi Carlo,

It seems 2 of us set it to soft-disabled at the same time, making it hard-disabled again! I’ve changed it to soft-disabled again. Let me know if you have any trouble finding it now.

Sorry! Stephen

172 posts
  • Envato Team
  • Football Player
  • 3 Years of Membership
  • Exclusive Author
+1 more
StephenCronin
Envato team
says

Hi Diamondlayers,

I assume you are talking about Aura? It has prettyPhoto in 4 places:

  • Demo\Drupal_7\sites\all\modules\acquia\modules\ac_shortcode\ac_composer\assets\composer\lib\prettyphoto\js\jquery.prettyPhoto.js
  • Drupal_7\sites\all\modules\acquia\modules\ac_shortcode\ac_composer\assets\composer\lib\prettyphoto\js\jquery.prettyPhoto.js
  • Demo\Drupal_7_demo_site.zip\Drupal_7\sites\all\modules\acquia\modules\ac_shortcode\ac_composer\assets\composer\lib\prettyphoto\js\jquery.prettyPhoto.js
  • modules.zip\modules\acquia\modules\ac_shortcode\ac_composer\assets\composer\lib\prettyphoto\js\jquery.prettyPhoto.js

All of these are version 3.1.5. You need to replace them with version 3.1.6 of prettyPhoto before we can re-enable it. There are also other issues for this item, which is why it was soft-disabled in October 2014 and these will need to be resolved as well.

I have moved it back to soft-disabled so that you can upload a new version etc. :)

Cheers, Stephen

172 posts
  • Envato Team
  • Football Player
  • 3 Years of Membership
  • Exclusive Author
+1 more
StephenCronin
Envato team
says

Hi, How to download all of my recent published items before this soft disabled? I need to get my latest item to fix it because my local hard drive is crash and I dont have any backup files :( Really need help…Thanks

Hi Willywize,

I think we assume you that will have a backup, so I don’t think there is anywhere provided. Though I’m sure we’ve all been caught out with not having backups at one point or another. Maybe something to sort out for the future. :)

In the meantime, the only way I can see to download the files is a little hacky. If you are logged in as willywize, you should be able to download them by visiting the following URL pattern in your browser:

http://themeforest.net/user/willywize/download_own_source_files/8995209

Just replace the ID number at the end with the ID for each of your items and visit that URL for each item and they should each download.

Hope that makes sense and you can get your files. Let me know if you can’t do it this way.

Cheers, Stephen

172 posts
  • Envato Team
  • Football Player
  • 3 Years of Membership
  • Exclusive Author
+1 more
StephenCronin
Envato team
says

But it’s PSD theme. What’s wrong? Where are prettyPhoto plugin in PSD theme? Thanks!

Hi, Stephen!

You disable PSD template from my account due to prettyPhoto. All my HTML theme I corrected. Bring it back please!

Thanks!



Hi! How is it applies to PSD templates?

I got an email from Envato:

Unfortunately your item LF – One Page Multi Purpose PSD Theme has been disabled from ThemeForest. Here’s some feedback from our Review team on why it was disabled.

Item soft-disabled because it uses an insecure version of the prettyPhoto jQuery library as outlined here: http://themeforest.net/forums/thread/security-vulnerability-affecting-prettyphoto-jquery-script/181180

Please make the required changes to your item and resubmit for re-review at http://themeforest.net/item/lf-one-page-multi-purpose-psd-theme/edit/5873014

Maybe I do not understand? Explain, please!

Thanks!

Hi Artureanec,

I checked for you and found prettyPhoto is inside this file:

HTML\js\jquery-packed_plugins.js

It’s version 3.1.5 – can you please update this to 3.1.6 and resubmit? Thanks.

Cheers, Stephen

Hi Artureanec,

As I said in my previous response, you have a HTML template inside the zip file for your PSD item (LF – One Page Multi Purpose PSD Theme). This contains an insecure version of prettyPhoto.

Please try opening your zip file for LF and looking inside it. You will find a HTML folder. Please open that. Then open the JS folder. Next open the “jquery-packed_plugins.js” file. Do a search on prettyPhoto and you will find prettyPhoto 3.1.5.

Here is a screenshot of the file that you need to find: http://envato.d.pr/10o2x/1RGer2HO

Just to be really clear: The problem is not with the PSD file itself, it is with the HTML template that is included in the zip file for that item.

Thanks!

Cheers, Stephen

172 posts
  • Envato Team
  • Football Player
  • 3 Years of Membership
  • Exclusive Author
+1 more
StephenCronin
Envato team
says

Hi StephenCronin,

We have Equator – Minimalist Business Wordpress Theme 5 that has been disabled from ThemeForest and it’s listed as Hidden Items because there’s some issues that we need to fix first, and of course update prettyPhoto jQuery library for vulnerability issue, but when we tried to update the theme, the theme disappeared and not in Hidden Items anymore.

We have contacted the support staff and they said the item has been hard rejected by the quality team, could you please help us for this?

Thank you.

Hi Indonez,

Yes, we had to hard-disable all items that were currently soft-disabled, so that we could add the message to authors. I’ve now moved this back to soft-disabled so that you can resubmit the theme when it’s been updated.

Cheers, Stephen

172 posts
  • Envato Team
  • Football Player
  • 3 Years of Membership
  • Exclusive Author
+1 more
StephenCronin
Envato team
says

Hi, we have updated our prettyphoto plugins on our items called: Vendroid, but it still disabled. According to your statement:
There have been a few cases where we have not correctly marked items as updated, even though the author has updated the item and resubmitted it using the correct wording in the notes. As a result, the items have been disabled. We apologise if this has happened to you. If it has happened to you, please leave a note here (we’ll be monitoring this thread) and we will re-enable your item as quickly as possible.

we notify, please fix re-enable our items with ID: 7717536

Thank you for your concern, Joe Venmond

Hey Joe,

Looks like that item was re-enabled 19 hours ago. Thanks.

Cheers, Stephen

172 posts
  • Envato Team
  • Football Player
  • 3 Years of Membership
  • Exclusive Author
+1 more
StephenCronin
Envato team
says

I bought a template for wordpress envision and author not out updates while more than 2 months ago, woocomerce continues to update and wordpress also the author in his Forum fence disappointment also delay up to 5 days to respond,...

Hi mferro1984,

This forum thread is for a different topic entirely and we cannot help you with that here. If you can’t get any answer from the author, then perhaps you could lodge a ticket with our Help team explaining the issues.

Cheers, Stephen

172 posts
  • Envato Team
  • Football Player
  • 3 Years of Membership
  • Exclusive Author
+1 more
StephenCronin
Envato team
says



Hi! How is it applies to PSD templates?

I got an email from Envato:

Unfortunately your item LF – One Page Multi Purpose PSD Theme has been disabled from ThemeForest. Here’s some feedback from our Review team on why it was disabled.

Item soft-disabled because it uses an insecure version of the prettyPhoto jQuery library as outlined here: http://themeforest.net/forums/thread/security-vulnerability-affecting-prettyphoto-jquery-script/181180

Please make the required changes to your item and resubmit for re-review at http://themeforest.net/item/lf-one-page-multi-purpose-psd-theme/edit/5873014

Maybe I do not understand? Explain, please!

Thanks!

Hi Artureanec,

I checked for you and found prettyPhoto is inside this file:

HTML\js\jquery-packed_plugins.js

It’s version 3.1.5 – can you please update this to 3.1.6 and resubmit? Thanks.

Cheers, Stephen
Stephen but it’s psd theme

Hi Artureanec,

You have documentation in the Help folder, PSDs in the PSD folder and HTML templates in the HTML folder. The HTML templates use an insecure version of prettyPhoto.

Presumably people will use the HTML template files to build websites, making them vulnerable. You need to either update prettyPhoto to 3.1.6 (or remove the HTML templates) before we can re-enable the item.

Thanks!

Cheers, Stephen

172 posts
  • Envato Team
  • Football Player
  • 3 Years of Membership
  • Exclusive Author
+1 more
StephenCronin
Envato team
says

My plugins have been disabled for almost a day due to prettyphoto vulnerability. I have submitted the files again for review however its taking a lot more time than usual, almost 23 hours now. Can you please take a look since our plugin does NOT include prettyphoto files nor use them. We just check for the existence of $.fn.prettyPhoto so that we can add CSS classes for prettyPhoto effect. By the way, we did re-submit the plugins after the vulnerabilities were found but did no upload any new package files, since we had no files to change in the current package.

Hi Onokazu,

Both your items were approved yesterday (so probably not long after you posted). Sorry for the inconvenience.

Just a note: because you didn’t change any files in the package when you resubmitted on July 3, the plugins both were approved automatically, and we didn’t get the message.

Cheers, Stephen

172 posts
  • Envato Team
  • Football Player
  • 3 Years of Membership
  • Exclusive Author
+1 more
StephenCronin
Envato team
says


Dear Stephen
Please check for our portfolio.
All items was approved from problem prettyPhoto but now another person can not see our theme.
http://themeforest.net/user/Opal_WP/portfolio
Only my account see it.
Let check for us. Thanks and have a nice day!

Hi Opal_WP,

I can confirm that all your items are enabled, but there is some issue with the site which is preventing them being displayed properly. The individual pages are live, but are giving errors every 4 or 5 page views and they are not listed under your portfolio.

I have asked the tech support team to investigate this. Hopefully they will be able to resolve this soon.

Cheers, Stephen

Hi Opal_WP,

It seems that this issue is now resolved (at least for me).

Cheers, Stephen

by
by
by
by
by
by