VYPR

YSlider

by WordPress

CVEs (1)

  • CVE-2025-12590MedNov 11, 2025
    risk 0.40cvss 6.1epss 0.00

    The YSlider plugin for WordPress is vulnerable to Cross-Site Request Forgery to Stored Cross-Site Scripting in all versions up to, and including, 1.1. This is due to missing nonce verification on the content configuration page and insufficient input sanitization and output…