| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-49635 | WordPress Banner Slider plugin <= 2.1 - Reflected Cross Site Scripting (XSS) vulnerability | manjurul.cis | Banner Slider | High | 7.1 | 2024-10-29 13:04:06 | Deep Dive |
| CVE-2024-49622 | WordPress Apa Banner Slider plugin <= 1.0.0 - CSRF to SQL Injection vulnerability | aatmaadhikari | Apa Banner Slider | High | 8.2 | 2024-10-20 09:03:39 | Deep Dive |
| CVE-2024-49323 | WordPress All in One Slider plugin <= 1.1 - Reflected Cross Site Scripting (XSS) vulnerability | Shahriar Alam | All in One Slider | High | 7.1 | 2024-10-20 07:53:29 | Deep Dive |
| CVE-2024-49334 | WordPress jLayer Parallax Slider plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability | Unizoe Web Solutions | jLayer Parallax Slider | High | 7.1 | 2024-10-20 07:52:29 | Deep Dive |
| CVE-2024-49280 | WordPress Lightbox slider -- Responsive Lightbox Gallery plugin <= 1.10.6 - Cross Site Scripting (XSS) vulnerability | Weblizar - WordPress Themes & Plugin | Lightbox slider – Responsive Lightbox Gallery | Medium | 6.5 | 2024-10-17 19:16:53 | Deep Dive |
| CVE-2024-5429 | Logo Slider < 4.1.0 - Contributor+ Stored XSS | Unknown | Logo Slider | - | - | 2024-10-17 06:00:04 | Deep Dive |
| CVE-2024-9540 | Sina Extension for Elementor <= 3.5.7 - Authenticated (Contributor+) Sensitive Information Exposure via Sina Modal Box Widget Elementor Template | shaonsina | Sina Extension for Elementor | Medium | 4.3 | 2024-10-16 07:31:52 | Deep Dive |
| CVE-2024-9582 | Accordion Slider <= 1.9.11 - Authenticted (Contributor+) Stored Cross-Site Scripting via HTML Attribute | bqworks | Accordion Slider | Medium | 6.4 | 2024-10-16 06:43:37 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2024-8431 | Photo Gallery, Images, Slider in Rbs Image Gallery <= 3.2.21 - Missing Authorization to Authenticated (Subscriber+) Private Gallery Title Disclosure | robosoft | Robo Gallery – Photo & Image Slider | Medium | 4.3 | 2024-10-08 11:34:19 | Deep Dive |
| CVE-2024-47307 | WordPress Meta Slider and Carousel with Lightbox plugin <= 2.0.1 - Cross Site Scripting (XSS) vulnerability | Essential Plugin | Meta slider and carousel with lightbox | Medium | 6.5 | 2024-10-06 11:31:27 | Deep Dive |
| CVE-2024-47381 | WordPress Slider & Popup Builder by Depicter plugin <= 3.2.2 - Cross Site Scripting (XSS) vulnerability | averta | Depicter Slider | Medium | 5.9 | 2024-10-05 14:58:38 | Deep Dive |
| CVE-2024-8324 | XO Slider <= 3.8.6 - Authenticated (Contributor+) Stored Cross-Site Scripting | ishitaka | XO Slider | Medium | 6.4 | 2024-10-01 08:30:18 | Deep Dive |
| CVE-2024-8107 | Slider Revolution <= 6.7.18 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload | Revolution Slider | Slider Revolution | Medium | 6.4 | 2024-10-01 06:39:52 | Deep Dive |
| CVE-2024-8283 | Slider by 10Web < 1.2.59 - Admin+ Stored XSS | Unknown | Slider by 10Web | 中危 | - | 2024-09-30 06:00:07 | Deep Dive |
| CVE-2024-47330 | Broken Access Control vulnerability on multiple WordPress plugins by Supsystic | Supsystic | Slider by Supsystic | Medium | 4.3 | 2024-09-26 02:38:04 | Deep Dive |
| CVE-2024-44048 | WordPress Product Carousel Slider & Grid Ultimate for WooCommerce plugin <= 1.9.10 - Authenticated Local File Inclusion vulnerability | wpWax | Product Carousel Slider & Grid Ultimate for WooCommerce | Medium | 6.5 | 2024-09-23 00:03:59 | Deep Dive |
| CVE-2024-45459 | WordPress Product Slider for WooCommerce by PickPlugins plugin <= 1.13.50 - Reflected Cross Site Scripting (XSS) vulnerability | PickPlugins | Product Slider for WooCommerce | High | 7.1 | 2024-09-15 07:41:38 | Deep Dive |
| CVE-2024-6850 | Carousel Slider < 2.2.14 - Editor+ Stored XSS | Unknown | Carousel Slider | - | - | 2024-09-13 06:00:03 | Deep Dive |
| CVE-2019-25212 | video carousel slider with lightbox <= 1.0.6 - Authenticated (Admin+) SQL Injection | nik00726 | video carousel slider with lightbox | Medium | 4.9 | 2024-09-11 08:31:04 | Deep Dive |