Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Mostafa

#26626of 53,622
9.6Total CVSS
Vulnerabilities · 2
Medium
2
PT-2026-42137
5.3
2026-05-20
WordPress · Slider Revolution · CVE-2026-6728
**Name of the Vulnerable Software and Affected Versions** Slider Revolution versions prior to 7.1.0 **Description** The Slider Revolution plugin for WordPress allows unauthenticated attackers to extract sensitive data, including published password-protected post, page, and product content. This occurs through the 'sliders/stream' endpoint via the `get stream data()` function. **Recommendations** Update to a version later than 7.0.9. As a temporary workaround, restrict access to the `get stream data()` function.
PT-2008-5247
4.3
2008-09-04
Ovidentia · Ovidentia · CVE-2008-3917
**Name of the Vulnerable Software and Affected Versions** Ovidentia version 6.6.5 **Description** A cross-site scripting (XSS) issue exists, allowing remote attackers to inject arbitrary web script or HTML via the `field` parameter in a search action. **Recommendations** For Ovidentia version 6.6.5, consider restricting access to the search action or sanitizing input for the `field` parameter to prevent exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.