Vulnerabilities > Depicter

DATE CVE VULNERABILITY TITLE RISK
2024-07-22 CVE-2024-37414 Cross-site Scripting vulnerability in Depicter
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Depicter Slider and Popup by Averta Depicter Slider allows Stored XSS.This issue affects Depicter Slider: from n/a through 3.0.2.
network
low complexity
depicter CWE-79
5.4
2024-06-20 CVE-2024-4390 Improper Privilege Management vulnerability in Depicter
The Slider and Carousel slider by Depicter plugin for WordPress is vulnerable to Arbitrary Nonce Generation in all versions up to, and including, 3.0.2.
network
low complexity
depicter CWE-269
6.5