Known Vulnerabilities for Wp Carousel by Shapedplugin
Listed below are 1 of the newest known vulnerabilities associated with "Wp Carousel" by "Shapedplugin".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65534 json | Author Cross Site Scripting (XSS) in Custom links in Elementor Image Carousel <= 1.1.1 versions. | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-18400 json | The Slider, Gallery, and Carousel by MetaSlider – Image Slider, Video Slider plugin for WordPress is vulnerable to Stored C... | Not Provided | 2026-08-06 | 2026-08-06 |
| CVE-2026-13247 json | The Logo Slider – Logo Carousel, Client Logo Slider & Brand Showcase for WordPress plugin for WordPress is vulnerable to St... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2026-9243 json | The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'carousel_direction' ... | Not Provided | 2026-05-29 | 2026-05-29 |
| CVE-2026-9022 json | The Splide Carousel Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'url' Block Attribute in all ... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-8613 json | The aThemes Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'title_tag' Widget Set... | Not Provided | 2026-06-10 | 2026-06-10 |
| CVE-2026-5191 json | The Tiled Gallery Carousel Without JetPack plugin for WordPress is vulnerable to stored cross-site scripting via the 'data-im... | Not Provided | 2026-06-02 | 2026-06-02 |
| CVE-2025-68074 json | Contributor Cross Site Scripting (XSS) in Image Carousel <= 1.0.0.41 versions. | Not Provided | 2026-06-26 | 2026-06-26 |
| CVE-2024-2949 json | Not Provided | 2024-04-06 | 2026-04-08 | |
| CVE-2023-40200 json | Authorization bypass through User-Controlled key vulnerability in Essential Plugin WP Logo Showcase Responsive Slider and Car... | Not Provided | 2026-06-11 | 2026-06-11 |