Vulnerabilities > Wpwax > Post Grid Slider Carousel Ultimate > 1.6.0

DATE CVE VULNERABILITY TITLE RISK
2025-01-27 CVE-2025-24782 PHP Remote File Inclusion vulnerability in Wpwax Post Grid, Slider & Carousel Ultimate
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in wpWax Post Grid, Slider & Carousel Ultimate allows PHP Local File Inclusion.
network
low complexity
wpwax CWE-98
8.8
2024-03-27 CVE-2024-29925 Unspecified vulnerability in Wpwax Post Grid, Slider & Carousel Ultimate
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpWax Post Grid, Slider & Carousel Ultimate allows Stored XSS.This issue affects Post Grid, Slider & Carousel Ultimate: from n/a through 1.6.6.
network
low complexity
wpwax
5.4