Vulnerabilities and security researches forquick-interest-slider quick-interest-slider
Direction: descendingApr 16, 2026
Loan Repayment Calculator and Application Form # CVE-2026-5694
- CVE, Research URL
- Application
- Date
- Apr 15, 2026
- Research Description
- The Quick Interest Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'loan-amount' and 'loan-period' parameters in all versions up to, and including, 3.1.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
- Affected versions
-
max 3.1.5.
- Status
-
vulnerable
Jan 10, 2026
Loan Repayment Calculator and Application Form # CVE-2025-64237
- CVE, Research URL
- Application
- Date
- Dec 16, 2025
- Research Description
- Cross-Site Request Forgery (CSRF) vulnerability in Graham Quick Interest Slider quick-interest-slider allows Cross Site Request Forgery.This issue affects Quick Interest Slider: from n/a through <= 3.1.5.
- Affected versions
-
max 3.1.5.
- Status
-
vulnerable
Dec 11, 2025
Loan Repayment Calculator and Application Form # CVE-2025-62153
- CVE, Research URL
- Application
- Date
- Dec 09, 2025
- Research Description
- Missing Authorization vulnerability in Graham Quick Interest Slider quick-interest-slider allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Quick Interest Slider: from n/a through <= 3.1.5.
- Affected versions
-
max 3.1.5.
- Status
-
vulnerable
Apr 02, 2025
Loan Repayment Calculator and Application Form # CVE-2025-26738
- CVE, Research URL
- Application
- Date
- Mar 27, 2025
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Graham Quick Interest Slider allows DOM-Based XSS.This issue affects Quick Interest Slider: from n/a through 3.1.3.
- Affected versions
-
max 3.1.3.
- Status
-
vulnerable
Jun 07, 2024
Loan Repayment Calculator and Application Form # CVE-2024-31263
- CVE, Research URL
- Application
- Date
- Apr 12, 2024
- Research Description
- Cross-Site Request Forgery (CSRF) vulnerability in aerin Loan Repayment Calculator and Application Form.This issue affects Loan Repayment Calculator and Application Form: from n/a through 2.9.4.
- Affected versions
-
max 2.9.5.
- Status
-
vulnerable
Loan Repayment Calculator and Application Form # CVE-2023-50829
- CVE, Research URL
- Application
- Date
- Dec 21, 2023
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Aerin Loan Repayment Calculator and Application Form allows Stored XSS.This issue affects Loan Repayment Calculator and Application Form: from n/a through 2.9.3.
- Affected versions
-
max 2.9.4.
- Status
-
vulnerable