Logichunt maintains a focused line of web interface and carousel components, including Logo Slider and Owl Carousel, that inject into content-management and presentation workflows. The vendor's disclosures cluster around input-handling weaknesses, chiefly cross-site scripting and OS command injection, which reflect the parsing and output-generation demands of client-side and plugin-oriented libraries. Live severity, exploitation, and current exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Logichunt over time
Signals from CVEs in this vendor scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-24626MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LogicHunt Logo Slider logo-slider-wp allows Stored XSS.This issue affects Logo | Jan 23, 2026 | 5.9 | 24 | NO | NO |
CVE-2024-5429HIGH The Logo Slider WordPress plugin before 4.1.0 does not validate and escape some of its Slider Settings before outputting them back in attributes, which could allow users with the | Oct 17, 2024 | 7.6 | 22 | NO | NO |
CVE-2022-4664MEDIUM The Logo Slider WordPress plugin before 3.6.0 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, | Feb 6, 2023 | 5.4 | 20 | NO | NO |
CVE-2024-10896MEDIUM The Logo Slider WordPress plugin before 4.5.0 does not sanitise and escape some of its Logo and Slider settings, which could allow high privilege users such as Contributor to perf | Nov 28, 2024 | 5.4 | 17 | NO | NO |
CVE-2024-24801MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LogicHunt OWL Carousel – WordPress Owl Carousel Slider allows Stored XSS.This | Feb 10, 2024 | 5.4 | 17 | NO | NO |
CVE-2024-12308MEDIUM The Logo Slider WordPress plugin before 4.6.0 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed | Feb 24, 2025 | 5.4 | 16 | NO | NO |
CVE-2024-10473MEDIUM The Logo Slider WordPress plugin before 4.5.0 does not sanitise and escape some of its Logo Settings when outputing them in pages where the Logo Slider shortcode is embed, which c | Nov 28, 2024 | 5.4 | 15 | NO | NO |
CVE-2024-3288MEDIUM The Logo Slider WordPress plugin before 4.0.0 does not validate and escape some of its Slider Settings before outputting them back in attributes, which could allow users with the | Jun 7, 2024 | 5.4 | 15 | NO | NO |
Signals from CVEs in this vendor scope (8 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Logichunt.
Media articles that mention a CVE ID that affects a product developed by Logichunt — matched by CVE ID, not by vendor name.