CVE Database /
CVE-2024-34444
CVE · High
CVE-2024-34444 — Slider Revolution [revslider] < 6.7.0
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2024-34444
|
Slider Revolution [revslider] < 6.7.0 |
Missing Authorization |
High
7.1
|
< 6.7.0
|
6.7.0 |
2024-05-28 |
—
|
CVE-2024-34444
The Slider Revolution plugin for WordPress contains a flaw in its init_rest_api function that fails to verify user permissions, allowing unauthenticated attackers to modify slider data in versions prior to 6.7.0. This vulnerability enables unauthorized changes to slider configurations without requiring any authentication credentials.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings