Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
7.6
CVE-2026-42710
- EPSS -
- Veröffentlicht 07.10.2026 11:55:51
- Zuletzt bearbeitet 07.10.2026 17:16:55
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in 10Web Slider by 10Web slider-wd allows Blind SQL Injection.This issue affects Slider by 10Web: from n/a through 1.2.63.
7.4
CVE-2026-66635
- EPSS 0.16%
- Veröffentlicht 18.08.2026 13:59:41
- Zuletzt bearbeitet 06.10.2026 16:17:09
Cross-Site Request Forgery (CSRF) vulnerability in 10Web Slider by 10Web slider-wd allows Cross Site Request Forgery.This issue affects Slider by 10Web: from n/a through 1.2.63.
4.8
CVE-2022-1320
- EPSS 1.04%
- Veröffentlicht 23.05.2022 08:16:07
- Zuletzt bearbeitet 21.11.2024 06:40:29
The Sliderby10Web WordPress plugin before 1.2.52 does not properly sanitize and escape some of its settings, which could allow high-privileged users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed
1