cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches fordd-post-carousel dd-post-carousel

Direction: ascending
Jun 07, 2024

Custom Post Carousels with Owl # CVE-2023-51493

CVE, Research URL

CVE-2023-51493

Date
Feb 10, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Howard Ehrenberg Custom Post Carousels with Owl allows Stored XSS.This issue affects Custom Post Carousels with Owl: from n/a through 1.4.6.
Affected versions
Min -, max -.
Status
vulnerable
Jul 12, 2025

Custom Post Carousels with Owl # CVE-2025-5125

CVE, Research URL

CVE-2025-5125

Date
Jun 20, 2025
Research Description
The Custom Post Carousels with Owl WordPress plugin before 1.4.12 uses the featherlight library and makes use of the data-featherlight attribute without sanitizing before using it.
Affected versions
Min -, max -.
Status
vulnerable