Extension WordPress

Vulnérabilités Image Slider by Ays- Responsive Slider and Carousel

Cette page rassemble les failles publiées pour Image Slider by Ays- Responsive Slider and Carousel, leurs plages de versions affectées et les correctifs signalés dans la base locale.

5Vulnérabilités
0Critiques
5Avec correctif
8,8CVSS maximal

Historique de sécurité

CVE et vulnérabilités de Image Slider by Ays- Responsive Slider and Carousel

5 fiches

CVE-2026-32494 Élevée · 7,2
Image Slider by Ays- Responsive Slider and Carousel

Image Slider by Ays- Responsive Slider and Carousel <= 2.7.1 – Unauthenticated Stored Cross-Site Scripting

The Image Slider by Ays- Responsive Slider and Carousel plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.7.1 due to insufficient input sanitization and output escaping. This makes it possible for…

Versions affectées

*-2.7.1

Correctif

2.7.2

Publication

20/03/2026

CVE-2025-14454 Moyenne · 4,3
Image Slider by Ays- Responsive Slider and Carousel

Image Slider by Ays- Responsive Slider and Carousel <= 2.7.0 – Cross-Site Request Forgery to Arbitrary Slider Deletion

The Image Slider by Ays- Responsive Slider and Carousel plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.7.0. This is due to missing or incorrect nonce validation on the bulk…

Versions affectées

*-2.7.0

Correctif

2.7.1

Publication

12/12/2025

Vulnérabilité Moyenne · 6,1
Image Slider by Ays- Responsive Slider and Carousel

Image Slider by Ays- Responsive Slider and Carousel <= 2.4.9 – Reflected Cross-Site Scripting

The Image Slider by Ays- Responsive Slider and Carousel box plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via several parameters in versions up to, and including, 2.4.9 due to insufficient input sanitization and output escaping. This…

Versions affectées

*-2.4.9

Correctif

2.5.0

Publication

29/06/2021

CVE-2021-24463 Élevée · 8,8
Image Slider by Ays- Responsive Slider and Carousel

Image Slider by Ays- Responsive Slider and Carousel < 2.5.0 – SQL Injection

The get_sliders() function in the Image Slider by Ays- Responsive Slider and Carousel WordPress plugin before 2.5.0 did not use whitelist or validate the orderby parameter before using it in SQL statements passed to the get_results() DB calls,…

Versions affectées

[*, 2.5.0)

Correctif

2.5.0

Publication

29/06/2021

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités