WordPress U-Design Theme 2.7.9 Cross Site Scripting

WordPress U-Design theme versions 2.3.0 through 2.7.9 suffer from a cross site scripting vulnerability.