VYPR

Post Slides

by WordPress

CVEs (1)

  • CVE-2025-15491MedFeb 7, 2026
    risk 0.36cvss 5.5epss 0.00

    The Post Slides WordPress plugin through 1.0.1 does not validate some shortcode attributes before using them to generate paths passed to include function/s, allowing any authenticated users such as with contributor or higher roles to perform LFI attacks