cleantalk
Vulnerabilities and Security Researches

Image Slider by Ays- Responsive Slider and Carousel, bd2e0643-c83b-4ca6-9332-66e4c49252ba

Published on
-
Research Description
Image Slider by Ays- Responsive Slider and Carousel [ays-slider] < 2.5.0 Multiple Plugins from AYS Pro - Reflected Cross-Site Scripting (XSS) The plugins did not properly sanitise and escape some GET parameters before outputting them back in attributes, leading to reflected Cross-Site Scripting issues which will be executed in the context of a logged in administrator
Affected versions
max 2.5.0.
Status
vulnerable