📦 Master Slider

by Averta

🔍 What is Master Slider?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-47508

HIGH CVSS 7.1 Nov 16, 2023

Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability in the Averta Master Slider Pro WordPress plugin allows attackers to inject malicious scripts via crafted URLs. When users click mali...

CVE-2025-58025

MEDIUM CVSS 6.5 Sep 22, 2025

This stored cross-site scripting (XSS) vulnerability in the Master Slider WordPress plugin allows attackers to inject malicious scripts into web pages. When users view affected pages, the scripts exec...

CVE-2025-39412

MEDIUM CVSS 4.3 May 19, 2025

A missing authorization vulnerability in the Master Slider WordPress plugin allows attackers to perform actions without proper authentication. This affects all WordPress sites running Master Slider ve...

CVE-2024-13757

MEDIUM CVSS 6.4 Mar 5, 2025

This vulnerability allows authenticated WordPress users with contributor-level access or higher to inject malicious scripts into web pages using the Master Slider plugin's ms_layer shortcode. The scri...

CVE-2024-6490

MEDIUM CVSS 6.5 Jul 26, 2024

This CSRF vulnerability in the Master Slider WordPress plugin allows attackers to trick authenticated administrators into unknowingly submitting malicious requests that delete all sliders. It affects ...

CVE-2023-50900

MEDIUM CVSS 4.3 Jun 19, 2024

This CVE describes a Cross-Site Request Forgery (CSRF) vulnerability in the Averta Master Slider WordPress plugin. Attackers can trick authenticated administrators into performing unintended actions l...

CVE-2023-6382

MEDIUM CVSS 6.4 Jun 1, 2024

This vulnerability allows authenticated WordPress users with contributor-level permissions or higher to inject malicious JavaScript via the 'ms_slide' shortcode's 'css_class' attribute. The injected s...