Prime Slider <= 4.1.10 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'follow_us_text' Parameter
Prime Slider Addons for Elementor
Minimum safe version
4.1.11
Update to 4.1.11 or later to address 21 fixable vulnerabilities
CVE-2025-68500
CVE-2025-14277
CVE-2024-12043
Freemius SDK <= 2.4.2 - Missing Authorization Checks
CVE-2024-8442
CVE-2024-5640
CVE-2024-3997
CVE-2024-4339
CVE-2024-32682
CVE-2024-32681
WordPress Prime Slider – Addons For Elementor Plugin <= 3.14.0 is vulnerable to Cross Site Scripting (XSS)
CVE-2024-30186
CVE-2024-1507
CVE-2024-1508
CVE-2024-1506
CVE-2024-24883
WordPress Prime Slider – Addons For Elementor Plugin <= 3.8.2 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Prime Slider – Addons For Elementor plugin <= 2.6.2 - Sensitive Information Disclosure vulnerability
WordPress Prime Slider – Addons For Elementor plugin <= 2.6.2 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability