CVE-2025-68558
- EPSS 0.26%
- Veröffentlicht 22.01.2026 16:52:08
- Zuletzt bearbeitet 27.04.2026 19:16:30
Missing Authorization vulnerability in averta Depicter Slider depicter allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Depicter Slider: from n/a through <= 4.0.4.
CVE-2022-47176
- EPSS 0.52%
- Veröffentlicht 13.12.2024 15:15:10
- Zuletzt bearbeitet 28.04.2026 19:19:13
Missing Authorization vulnerability in Depicter Slider and Popup by Averta Depicter Slider allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Depicter Slider: from n/a through 1.9.0.
CVE-2024-4633
- EPSS 0.42%
- Veröffentlicht 06.12.2024 14:15:20
- Zuletzt bearbeitet 15.04.2026 00:35:42
The Slider and Carousel slider by Depicter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘addExtraMimeType’ function in versions up to, and including, 3.2.1 due to insufficient input sanitization and output escaping. This ...
CVE-2024-47381
- EPSS 0.26%
- Veröffentlicht 05.10.2024 15:15:14
- Zuletzt bearbeitet 23.04.2026 15:19:16
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in averta Depicter Slider depicter allows Stored XSS.This issue affects Depicter Slider: from n/a through <= 3.2.2.
CVE-2024-43161
- EPSS 0.28%
- Veröffentlicht 12.08.2024 22:15:10
- Zuletzt bearbeitet 23.01.2026 19:37:54
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Averta Depicter Slider allows Stored XSS.This issue affects Depicter Slider: from n/a through 3.1.2.
CVE-2024-1357
- EPSS 0.4%
- Veröffentlicht 16.04.2024 10:15:07
- Zuletzt bearbeitet 08.04.2026 19:20:38
The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's aux_timeline shortcode in all versions up to, and including, 2.15.7 due to insufficient input sanitization and output...
CVE-2023-6493
- EPSS 0.2%
- Veröffentlicht 05.01.2024 02:15:07
- Zuletzt bearbeitet 08.04.2026 19:18:55
The Depicter Slider – Responsive Image Slider, Video Slider & Post Slider plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.0.6. This is due to missing or incorrect nonce validation on the 'save'...