Vulnerabilities > Depicter

DATE CVE VULNERABILITY TITLE RISK
2024-11-01 CVE-2024-47359 Missing Authorization vulnerability in Depicter
Missing Authorization vulnerability in Depicter Slider and Popup by Averta Depicter Slider allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Depicter Slider: from n/a through 3.2.2.
network
low complexity
depicter CWE-862
critical
9.8
2024-07-22 CVE-2024-37414 Cross-site Scripting vulnerability in Depicter
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Depicter Slider and Popup by Averta Depicter Slider allows Stored XSS.This issue affects Depicter Slider: from n/a through 3.0.2.
network
low complexity
depicter CWE-79
5.4
2024-06-20 CVE-2024-4390 Improper Privilege Management vulnerability in Depicter
The Slider and Carousel slider by Depicter plugin for WordPress is vulnerable to Arbitrary Nonce Generation in all versions up to, and including, 3.0.2.
network
low complexity
depicter CWE-269
6.5