Vulnerabilities > I13Websolution > Thumbnail Carousel Slider > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-10-27 CVE-2023-5821 Unspecified vulnerability in I13Websolution Thumbnail Carousel Slider 1.0
The Thumbnail carousel slider plugin for WordPress is vulnerable to Cross-Site Request Forgery in version 1.0.
network
low complexity
i13websolution
6.5
2023-05-15 CVE-2023-1915 Unspecified vulnerability in I13Websolution Thumbnail Carousel Slider
The Thumbnail carousel slider WordPress plugin before 1.1.10 does not sanitise and escape some parameters before outputting them back in pages, leading to Reflected Cross-Site Scripting vulnerability which could be used against high privilege users such as admin.
network
low complexity
i13websolution
6.1
2023-04-18 CVE-2023-2120 Unspecified vulnerability in I13Websolution Thumbnail Carousel Slider
The Thumbnail carousel slider plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the search_term parameter in versions up to, and including, 1.1.9 due to insufficient input sanitization and output escaping.
network
low complexity
i13websolution
6.1