CVE-2025-58025
Master Slider – Responsive Touch Slider
Minimum safe version
3.11.2
Update to 3.11.2 or later to address 22 fixable vulnerabilities
Master Slider <= 3.10.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via masterslider_pb and ms_slide Shortcodes
WordPress Master Slider plugin <= 3.11.0 - Broken Access Control vulnerability
Master Slider – Responsive Touch Slider <= 3.10.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via ms_layer Shortcode
Master Slider – Responsive Touch Slider <= 3.10.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via ms_slider Shortcode
CVE-2024-12173
CVE-2024-6490
CVE-2024-37222
CVE-2023-50900
CVE-2024-4375
CVE-2023-6382
CVE-2024-4470
CVE-2024-32600
CVE-2024-32580
CVE-2023-6326
CVE-2024-1449
CVE-2024-0611
Master Slider < 2.5.2 - Authenticated Blind SQL Injection
Master Slider < 2.8.0 - Reflected Cross-Site Scripting (XSS)
Master Slider - Responsive Touch Slider <= 2.5.1 - Authenticated Blind SQL Injection
Master Slider <= 2.7.1 - Cross-Site Scripting
WordPress Master Slider Plugin <= 2.5.1 - Blind SQL Injection
WordPress Master Slider Plugin <= 2.7.1 - Reflected Cross Site Scripting
WordPress Master Slider plugin <= 3.7.0 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability