Slider by Soliloquy 2.6.2 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts through the title parameter. Attackers can add JavaScript payloads in the title field when creating or editing sliders, which executes in the browsers of users viewing the slider on both administrative and frontend pages.
Metrics
Affected Vendors & Products
References
History
Sun, 10 May 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Slider by Soliloquy 2.6.2 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts through the title parameter. Attackers can add JavaScript payloads in the title field when creating or editing sliders, which executes in the browsers of users viewing the slider on both administrative and frontend pages. | |
| Title | WordPress Plugin Slider by Soliloquy 2.6.2 Stored XSS | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-05-10T12:43:45.278Z
Reserved: 2026-02-01T11:24:18.715Z
Link: CVE-2021-47922
No data.
Status : Received
Published: 2026-05-10T13:16:28.033
Modified: 2026-05-10T13:16:28.033
Link: CVE-2021-47922
No data.
OpenCVE Enrichment
Updated: 2026-05-10T14:45:14Z