← Back

Testimonial Slider And Showcase

testimonial_slider_and_showcase

Vendor: Radiustheme • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Radiustheme
1Testimonial Slider And Showcase
May 8, 2025
Apr 15, 2024
N/A· v4
5.4 MEDIUM· v3
N/A· v2
The Testimonial Slider WordPress plugin before 2.3.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the un...Show more
The Testimonial Slider WordPress plugin before 2.3.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)Show less
1Radiustheme
1Testimonial Slider And Showcase
May 7, 2025
Mar 26, 2024
N/A· v4
4.3 MEDIUM· v3
N/A· v2
The Testimonial Slider WordPress plugin before 2.3.7 does not properly ensure that a user has the necessary capabilities to edit certain sensitive Testimonial Slider WordPress plugin before 2.3.7 settings, making it poss...Show more
The Testimonial Slider WordPress plugin before 2.3.7 does not properly ensure that a user has the necessary capabilities to edit certain sensitive Testimonial Slider WordPress plugin before 2.3.7 settings, making it possible for users with at least the Author role to edit them.Show less