CVE · Medium

CVE-2026-6728 — Slider Revolution [revslider] < 7.0.10

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-6728 Slider Revolution [revslider] < 7.0.10 Exposure of Sensitive Information to an Unauthorized Actor Medium 5.3 < 7.0.10 7.0.10 2026-05-19

CVE-2026-6728

The Slider Revolution plugin for WordPress contains a flaw that allows unauthorized access to sensitive information in versions up to 7.0.9. Specifically, the 'get_stream_data()' function can be exploited by unauthenticated attackers to retrieve protected content from posts, pages, and products. This exposure includes password-protected content that was intended to remain hidden.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.