Nextendweb

    Dashboard / Vendors

    Products: 7
    Vulnerabilities: 21
    Known Exploited: 0
    3
    Critical Level Threats
    1
    High Level Threats
    17
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-15798

    Smart Slider 3 <= 3.5.1.38 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'slider' Block Attribute

    Last Modified: Aug 28, 2026
    Published: Aug 28, 2026

    CVE-2026-12385

    Smart Slider 3 <= 3.5.1.37 - Missing Authorization to Authenticated (Contributor+) Sensitive Information Exposure via WP_Query Parameter Injection via 'keyword' Parameter

    Last Modified: Jul 14, 2026
    Published: Jul 13, 2026

    CVE-2026-9197

    Smart Slider 3 <= 3.5.1.36 - Authenticated (Administrator+) Path Traversal to Arbitrary File Read via 'src'/'srcset' Attribute in HTML Export

    Last Modified: Jun 06, 2026
    Published: Jun 06, 2026

    CVE-2026-34424

    Smart Slider 3 Pro 3.5.1.35 Supply Chain Attack Remote Access Toolkit

    Last Modified: Apr 15, 2026
    Published: Apr 09, 2026

    CVE-2026-4065

    Smart Slider 3 <= 3.5.1.33 - Missing Authorization to Authenticated (Contributor+) Slider Data Read and Image Record Manipulation

    Last Modified: Apr 08, 2026
    Published: Apr 07, 2026
    Items Per Page