cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forcryout-serious-slider cryout-serious-slider

Direction: ascending
Jun 07, 2024

Serious Slider # CVE-2024-33650

CVE, Research URL

CVE-2024-33650

Application

Serious Slider

Date
Apr 26, 2024
Research Description
Cross-Site Request Forgery (CSRF) vulnerability in Cryout Creations Serious Slider.This issue affects Serious Slider: from n/a through 1.2.4.
Affected versions
max 1.2.5.
Status
vulnerable
Jun 21, 2024

Serious Slider # CVE-2024-35762

CVE, Research URL

CVE-2024-35762

Application

Serious Slider

Date
Jun 21, 2024
Research Description
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Cryout Creations Serious Slider allows Stored XSS.This issue affects Serious Slider: from n/a through 1.2.4.
Affected versions
max 1.2.5.
Status
vulnerable
Dec 22, 2024

Serious Slider # CVE-2024-11108

CVE, Research URL

CVE-2024-11108

Application

Serious Slider

Date
Dec 20, 2024
Research Description
The Serious Slider WordPress plugin before 1.2.7 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.
Affected versions
max 1.2.7.
Status
vulnerable
Feb 28, 2026

Serious Slider # CVE-2026-25399

CVE, Research URL

CVE-2026-25399

Application

Serious Slider

Date
Feb 19, 2026
Research Description
Missing Authorization vulnerability in CryoutCreations Serious Slider cryout-serious-slider allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Serious Slider: from n/a through <= 1.2.7.
Affected versions
max 1.2.7.
Status
vulnerable