CVE Database /
CVE-2026-6443
CVE · Critical
CVE-2026-6443 — WP Logo Showcase Responsive Slider and Carousel [wp-logo-showcase-responsive-slider-slider] < 3.8.7.1 (closed)
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2026-6443
|
WP Logo Showcase Responsive Slider and Carousel [wp-logo-showcase-responsive-slider-slider] < 3.8.7.1 (closed) |
Embedded Malicious Code |
Critical
9.8
|
< 3.8.7.1
|
3.8.7.1 |
2026-04-09 |
—
|
CVE-2026-6443
Essentialplugin's WordPress plugins have been compromised by a rogue entity, who secretly inserted a hidden access point into multiple versions of their software during a transfer of ownership. As a result, this malicious code allows unauthorized parties to continuously monitor and manipulate affected websites, including injecting unwanted content.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings