Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Slider Revolution MEDIUM 5.4
CVE-2024-8107

The Slider Revolution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 6.…

Fix: after 6.7.18
Fix from $1,600 2024-10-01
Slider Revolution HIGH 8.8
CVE-2024-34444

Missing Authorization vulnerability in ThemePunch OHG Slider Revolution.This issue affects Slider Revolution: from n/a before 6.7.0.

Fix: 6.7.0+
Fix from $1,950 2024-06-19
Slider Revolution MEDIUM 5.4
CVE-2024-34443

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ThemePunch OHG Slider Revolution allows …

Fix: 6.7.11+
Fix from $1,600 2024-06-19
Slider Revolution MEDIUM 5.4
CVE-2024-4637

The Slider Revolution plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 6.7.10 due to insuffici…

Fix: 6.7.11+
Fix from $1,600 2024-06-04
Slider Revolution MEDIUM 5.4
CVE-2024-4581

The Slider Revolution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Add Layer widget in all versions up to, and …

Fix: 6.7.11+
Fix from $1,600 2024-06-04
Slider Revolution MEDIUM 5.4
CVE-2024-4092

The Slider Revolution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘htmltag’ parameter in all versions up to, and includ…

Fix: 6.7.8+
Fix from $1,600 2024-05-02
Slider Revolution HIGH 8.8
CVE-2023-6528

The Slider Revolution WordPress plugin before 6.6.19 does not prevent users with at least the Author role from unserializing arbitrary content when i…

Fix: 6.6.19+
Fix from $1,950 2024-01-08
Slider Revolution HIGH 8.8
CVE-2023-47784

Unrestricted Upload of File with Dangerous Type vulnerability in ThemePunch OHG Slider Revolution.This issue affects Slider Revolution: from n/a thro…

Fix: after 6.6.15
Fix from $1,950 2023-12-20
Slider Revolution MEDIUM 5.4
CVE-2023-47772

Contributor+ Stored Cross-Site Scripting (XSS) vulnerability in Slider Revolution <= 6.6.14.

Fix: after 6.6.14
Fix from $1,600 2023-11-20
Essential Grid MEDIUM 6.1
CVE-2023-47684

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in ThemePunch OHG Essential Grid plugin <= 3.1.0 versions.

Fix: after 3.1.0
Fix from $1,600 2023-11-14
Slider Revolution HIGH 8.8
CVE-2023-2359

The Slider Revolution WordPress plugin through 6.6.12 does not check for valid image files upon import, leading to an arbitrary file upload which may…

Fix: after 6.6.12
Fix from $1,950 2023-06-19
Showbiz Pro CRITICAL 9.8
CVE-2015-9499EPSS 16%

The Showbiz Pro plugin through 1.7.1 for WordPress has PHP code execution by uploading a .php file within a ZIP archive.

Fix: after 1.7.1
Fix from $2,300 2019-10-22
Showbiz Pro HIGH 7.5
CVE-2014-9735EPSS 76%

The ThemePunch Slider Revolution (revslider) plugin before 3.0.96 for WordPress and Showbiz Pro plugin 1.7.1 and earlier for Wordpress does not prope…

Fix: after 3.0.95
Fix from $1,950 2015-06-30
Slider Revolution MEDIUM 5.0
CVE-2014-9734EPSS 21%

Directory traversal vulnerability in the Slider Revolution (revslider) plugin before 4.2 for WordPress allows remote attackers to read arbitrary file…

Fix: after 4.1.4
Fix from $1,600 2015-06-30