0
Validation results

RosaTube

RosaTube

WordPress 6.7 theme
0
This theme seems to be proprietary. Themecheck doesn't distribute commercial themes.
Critical alerts
  1. Security breaches : Use of base64_decode() Found base64_decode in file create_tag_func.php. 6: $html= base64_decode(get_option('ken_rosatube_connect_status')); //get info39: $html= base64_decode(get_option('ken_rosatube_connect_status')); //get infoFound base64_decode in file connect.php. 31: $html= base64_decode(get_option('ken_rosatube_importer_connect_status')); //get in
  2. Security breaches : Use of base64_encode() Found base64_encode in file create_tag_func.php.
     $status=base64_encode($xml->status); //load library
     $status=base64_encode($xml->status); //load library
     if(base64_encode($wp_status)==PRODUCT_PREFIX){
     update_option('ken_rosatube_connect_status', base64_encode($html));
    Found base64_encode in file connect.php.
     $status=base64_encode($xml->status); //load library
  3. Malware : Operations on file system file_get_contents was found in the file simple_html_dom.php 75: $contents = file_get_contents($url, $use_include_path, $context, $offset);1081: $this->load(call_user_func_array('file_get_contents', $args), true);file_put_contents was found in the file simple_html_dom.php 1105: if ($filepath!=='') file_put_contents($filepath, $ret, LOCK_EX);file_get_contents was found in the file player.php 30: $str = file_get_contents('http://www.xvideos.com/video'.$video.'/', false, stream_42: $str = file_get_contents($url);48: $str = file_get_contents($url);74: $str = file_get_contents($url, false, stream_context_create($userAgent) );79: $str = file_get_contents('http://www.redtube.com/'. $video .'/', false, stream_confile_get_contents was found in the file player.php 30: $str = file_get_contents('http://www.xvideos.com/video'.$video.'/', false, stream_42: $str = file_get_contents($url);48: $str = file_get_contents($url);74: $str = file_get_contents($url, false, stream_context_create($userAgent) );79: $str = file_get_contents('http://www.redtube.com/'. $video .'/', false, stream_confile_get_contents was found in the file player.php 30: $str = file_get_contents('http://www.xvideos.com/video'.$video.'/', false, stream_42: $str = file_get_contents($url);48: $str = file_get_contents($url);74: $str = file_get_contents($url, false, stream_context_create($userAgent) );79: $str = file_get_contents('http://www.redtube.com/'. $video .'/', false, stream_confile_get_contents was found in the file player.php 30: $str = file_get_contents('http://www.xvideos.com/video'.$video.'/', false, stream_42: $str = file_get_contents($url);48: $str = file_get_contents($url);74: $str = file_get_contents($url, false, stream_context_create($userAgent) );79: $str = file_get_contents('http://www.redtube.com/'. $video .'/', false, stream_confile_get_contents was found in the file player.php 30: $str = file_get_contents('http://www.xvideos.com/video'.$video.'/', false, stream_42: $str = file_get_contents($url);48: $str = file_get_contents($url);74: $str = file_get_contents($url, false, stream_context_create($userAgent) );79: $str = file_get_contents('http://www.redtube.com/'. $video .'/', false, stream_con
  4. Malware : Network operations curl_init was found in the file player.php 12: $ch = curl_init($url);curl_exec was found in the file player.php 18: $page = curl_exec($ch);curl_init was found in the file player-picasa.php 10: $ch = @curl_init();curl_exec was found in the file player-picasa.php 25: $page = curl_exec($ch);curl_init was found in the file transform.php 7: $curl = curl_init();curl_exec was found in the file transform.php 14: $data = curl_exec ($curl);
  5. Content width : Proper definition of content_width No content width has been defined. Example:
    if ( ! isset( $content_width ) ) $content_width = 900;
Warning
  1. Unwanted files : Windows thumbnail storethumbs.db was found.
  2. Fundamental theme elements : Presence of comments_template()Could not find comments_template.
  3. Fundamental theme elements : Presence of comment_form()Could not find comment_form.
  4. Fundamental theme elements : Presence of wp_link_pages()Could not find wp_link_pages.
  5. Fundamental theme elements : Presence of post_class()Could not find post_class.
  6. Comment pagination : Declaration of comment paginationThe theme doesn't have comment pagination code in it. Use paginate_comments_links() to add comment pagination, or older previous_comments_link() and next_comments_link() functions.
  7. Custom elements : Presence of custom headerNo reference to custom header was found in the theme.
  8. Custom elements : Presence of custom backgroundNo reference to custom background was found in the theme.
  9. Editor style : Presence of editor styleNo reference to add_editor_style() was found in the theme. It is recommended that the theme implements editor styling, so as to make the editor content match the resulting post output in the theme, for a better user experience.
  10. Featured image : Use of the_post_thumbnail() instead of custom fields for thumbnailsNo reference to the_post_thumbnail was found in the theme.
  11. Date and time implementation : Use of the_time()At least one hard coded date was found in the file archive.php. Function get_option( 'date_format' ) should be used instead.
  12. Screenshot : Screenshot fileScreenshot size is 300x225px. Screenshot size should be 1200x900, to account for HiDPI displays. Any 4:3 image size is acceptable, but 1200x900 is preferred.Bad screenshot file extension ! File screenshot.png is not an actual JPG file. Detected type was : "image/png".
Tip-off
  1. theme tags : Presence of bad theme tagsThemes that use the tag accessibility-ready will need to undergo an accessibility review.
    See https://make.wordpress.org/themes/handbook/review/accessibility/
  2. Static links : Presence of hard-coded linksPossible hard-coded links were found in the file functions.php.277: Brought to you by <a href='http://xwpthemes.com' target='blank'>XWPThemes<img src='<?php echo esc_url(Possible hard-coded links were found in the file single.php.57: <a href='http://videojs.com/html5-video-support/' target='_blank'>supports HTML5 vid
  3. Optional files : Presence of rtl stylesheet rtl.cssThis theme does not contain optional file rtl.php.
  4. Optional files : Presence of front page template file front-page.phpThis theme does not contain optional file front-page.php.
  5. Optional files : Presence of home template file home.phpThis theme does not contain optional file home.php.
  6. Optional files : Presence of category template file category.phpThis theme does not contain optional file category.php.
  7. Optional files : Presence of tag template file tag.phpThis theme does not contain optional file tag.php.
  8. Optional files : Presence of term template file taxonomy.phpThis theme does not contain optional file taxonomy.php.
  9. Optional files : Presence of author template file author.phpThis theme does not contain optional file author.php.
  10. Optional files : Presence of date/time template file date.phpThis theme does not contain optional file date.php.
  11. Optional files : Presence of attachment template file attachment.phpThis theme does not contain optional file attachment.php.
  12. Optional files : Presence of image template file image.phpThis theme does not contain optional file image.php.
  13. Use of includes : Use of include or requireThe theme appears to use include or require : player.php 3: require_once( $parse_uri[0] . 'wp-load.php' ); If these are being used to include separate sections of a template from independent files, then get_template_part() should be used instead. Otherwise, use include_once or require_once instead.The theme appears to use include or require : player-direct.php 3: require_once( $parse_uri[0] . 'wp-load.php' ); If these are being used to include separate sections of a template from independent files, then get_template_part() should be used instead. Otherwise, use include_once or require_once instead.The theme appears to use include or require : player-picasa.php 3: require_once( $parse_uri[0] . 'wp-load.php' ); If these are being used to include separate sections of a template from independent files, then get_template_part() should be used instead. Otherwise, use include_once or require_once instead.
Other checked themes