Extension WordPress
Vulnérabilités Logo Slider WP – Responsive Logo Carousel, Logo Gallery & Logo Showcase
Cette page rassemble les failles publiées pour Logo Slider WP – Responsive Logo Carousel, Logo Gallery & Logo Showcase, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Logo Slider WP – Responsive Logo Carousel, Logo Gallery & Logo Showcase
10 fiches
Logo Slider <= 5.5 – Authenticated (Contributor+) Stored Cross-Site Scripting via 'lgx_tooltip_position' Parameter
The Logo Slider – Logo Carousel, Client Logo Slider & Brand Showcase for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'lgx_tooltip_position' parameter in all versions up to, and including, 5.5 due to insufficient…
*-5.5
5.5.4
09/07/2026
Logo Slider <= 4.9.0 – Authenticated (Author+) Stored Cross-Site Scripting via 'logo-slider' Shortcode
The Logo Slider – Logo Carousel, Logo Showcase & Client Logo Slider Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the image alt text in all versions up to, and including, 4.9.0 due to insufficient…
*-4.9.0
Non indiqué
20/03/2026
Logo Slider <= 5.5.3 – Authenticated (Author+) Stored Cross-Site Scripting
The Logo Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 5.5.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level access and…
*-5.5.3
5.5.4
10/01/2026
Logo Slider <= 4.8.0 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Logo Slider – Logo Carousel, Logo Showcase & Client Logo Slider Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 4.8.0 due to insufficient input sanitization and output escaping.…
*-4.8.0
4.9.0
12/12/2025
Logo Slider <= 4.5.0 – Authenticated (Admin+) Stored Cross-Site Scripting
The Logo Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 4.5.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers,…
*-4.5.0
4.6.0
03/02/2025
Logo Slider <= 4.1.0 – Authenticated (Author+) Stored Cross-Site Scripting
The Logo Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all versions up to, and including, 4.1.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes…
*-4.1.0
4.5.0
07/11/2024
Logo Slider <= 4.1.0 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Logo Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the "Brand Name" field in all versions up to, and including, 4.1.0 due to insufficient input sanitization and output escaping. This makes it possible for…
*-4.1.0
4.5.0
07/11/2024
Logo Slider <= 4.0.0 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Logo Slider – Logo Carousel, Logo Showcase & Client Logo Slider WordPress Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Brand Name field in all versions up to, and including, 4.0.0 due to…
*-4.0.0
4.1.0
26/09/2024
Logo Slider <= 3.9.9 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Logo Slider – Logo Carousel, Logo Showcase & Client Logo Slider WordPress Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the header and subtitle parameter in all versions up to, and including, 3.9.9 due…
*-3.9.9
4.0.0
17/05/2024
Logo Slider <= 3.5.3 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Logo Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via numerous shortcodes in versions up to, and including, 3.5.3 due to insufficient input sanitization and output escaping in the 'lgx_output_function_dep' function. This makes it possible…
*-3.5.3
3.6.0
16/12/2022
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.