Webpsilon develops a narrow line of WordPress slider and table plugins, with its vulnerability record centered on web application input-handling flaws such as SQL injection and cross-site scripting in products including Cube Slider, Responsive 3D Slider, and Ultimate Tables. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Webpsilon over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-24398HIGH The Add new scene functionality in the Responsive 3D Slider WordPress plugin through 1.2 uses an id parameter which is not sanitised, escaped or validated before being inserted to | Sep 20, 2021 | 7.2 | 23 | NO | NO |
CVE-2022-36357MEDIUM Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Webpsilon ULTIMATE TABLES plugin <= 1.6.5 versions. | Nov 17, 2022 | 6.1 | 21 | NO | NO |
The Cube Slider WordPress plugin through 1.2 does not sanitise and escape the idslider parameter before using it in various SQL queries, leading to SQL Injections exploitable by hi | Jun 8, 2022 | 2.7 | 16 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Webpsilon.
Media articles that mention a CVE ID that affects a product developed by Webpsilon — matched by CVE ID, not by vendor name.