Vulnerabilities (CVE)

Filtered by vendor Infornweb Subscribe
Filtered by product Post Slider And Post Carousel
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-4567 1 Infornweb 1 Post Slider And Post Carousel 2025-08-01 N/A N/A
The Post Slider and Post Carousel with Post Vertical Scrolling Widget WordPress plugin before 3.2.10 does not validate and escape some of its Widget options before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.