How can we help?

If you are looking for support for our Poka theme, this is the place!

Home Forums Poka v2 support jQuery update

This topic contains 4 replies, has 2 voices, and was last updated by  admin 2 weeks ago.

Viewing 5 posts - 1 through 5 (of 5 total)
  • Author
    Posts
  • #2728

    Thomas Eaves
    Participant

    Just following up the email I sent to find out when you anticipate updating the jQuery version that we discussed?

    #2743

    Thomas Eaves
    Participant

    ?????

    #2746

    admin
    Keymaster

    Hi Thomas!

    Sorry for the delayed response.
    Poka theme doesn’t include a version of jQuery but instead uses the WP jQuery. This is common in Theme/Plugin development for better compatibility with the plugins.

    This vulnerability is when you make a request to another domain (using jQuery) and the response can execute js in your end. In Poka theme there is no such case so there is nothing to worry about.

    But because jQuery is common also for the plugins you are using please be careful with the plugins you have installed.

    You can read more about this issue here : https://wordpress.org/support/topic/google-lighthouse-sees-jquery-1-12-4-as-vulnerable/

    #2760

    Thomas Eaves
    Participant

    OK, to clarify – I do not have ANY plugins currently installed. */poka_v2/js/vendor/jquery-1.11.3.min.js <— looks like there is something the poka theme uses.

    This is all over my head, so given your answer, I will just conclude that the issue is not going to be fixed and I’ll use a theme from elsewhere that does not give off alerts to vulnerabilities.

    #2762

    admin
    Keymaster

    Hi Thomas!

    As I said Poka is not using it’s own jQuery. It uses the jQuery WordPress includes in it’s build.
    As you can see in a demo but I’m sure you can check in your site also the jQuery that is used is from WordPress includes.

    Example: http://pokav2.pokatheme.com/demo4/
    jQuery if you view the source : http://pokav2.pokatheme.com/demo4/wp-includes/js/jquery/jquery.js?ver=1.12.4

    As you can understand we don’t have any control what version of jQuery WP is using. Most of the themes use the jQuery WP includes because this is a good practice, you can verify it if you want with other themes.
    Also the answer from the official WP support forum is from one of the core developer of WP.

    Of course there are workarounds if you want to disable the WP version of iQuery and use your own but you may experience issues with plugins. If you want help please let me know.

    You have nothing to worry about the theme and the version of jQuery. 🙂

    • This reply was modified 2 weeks ago by  admin.
Viewing 5 posts - 1 through 5 (of 5 total)

You must be logged in to reply to this topic.

WordPress 5.0 is released with the new Gutenberg editor. Check out here about the compatibility with Poka theme!