CVE · Critical

CVE-2026-6443 — WP Logo Showcase Responsive Slider and Carousel [wp-logo-showcase-responsive-slider-slider] < 3.8.7.1 (closed)

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-6443 WP Logo Showcase Responsive Slider and Carousel [wp-logo-showcase-responsive-slider-slider] < 3.8.7.1 (closed) Embedded Malicious Code Critical 9.8 < 3.8.7.1 3.8.7.1 2026-04-09

CVE-2026-6443

Essentialplugin's WordPress plugins have been compromised by a rogue entity, who secretly inserted a hidden access point into multiple versions of their software during a transfer of ownership. As a result, this malicious code allows unauthorized parties to continuously monitor and manipulate affected websites, including injecting unwanted content.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.