SecAlerts
m

metaslider

Security Risk Profile

66
/100
high

Security Risk Score

Comprehensive risk assessment based on 10 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from October 10, 2022 to present

10
Total CVEs
3
Critical+High
0
Exploited
1
Unpatched

Threat Assessment

Avg CVSS
6.2
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
1
Critical/High
Risk Level
66/100
high

Severity Distribution

Critical
2
High
1
Medium
5
Low
2

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
4

Age Distribution

Common Weaknesses (CWE)

1
XSS
6
2
Code Injection
1
3
CSRF
1

Most Affected Products

1. MetaSlider Slider\, Gallery\, And Carousel Wordpress6
2. MetaSlider Responsive Slider by MetaSlider2
3. MetaSlider Slider, Gallery, and Carousel2
4. MetaSlider Slider, Gallery, Carousel2
5. MetaSlider Responsive Slider1

Recent Vulnerabilities

See more →
CVE-2026-39465
CVSS 9.1critical

WordPress Responsive Slider by MetaSlider plugin <= 3.106.0 - Remote Code Execution (RCE) vulnerability

Jun 15, 2026🔧 No Patch
CVE-2026-39467
CVSS 7.2high

WordPress Responsive Slider by MetaSlider plugin <= 3.106.0 - PHP Object Injection vulnerability

Apr 21, 2026
CVE-2025-5337
CVSS 6.4EPSS 0%medium

Slider, Gallery, and Carousel by MetaSlider <= 3.98.0 - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via aria-label Parameter

Jun 14, 2025
CVE-2025-1203
CVSS 3.5low

Slider, Gallery, Carousel by MetaSlider < 3.95.0 - Editor+ Stored XSS

Mar 24, 2025🔧 No Patch
CVE-2025-1062
CVSS 3.5low

Slider, Gallery, Carousel by MetaSlider < 3.95.0 - Editor+ Stored XSS

Mar 24, 2025🔧 No Patch
CVE-2025-26763
CVSS 9.8EPSS 0%critical

WordPress Slider, Gallery, and Carousel by MetaSlider – Image Slider, Video Slider Plugin <= 3.94.0 - PHP Object Injection vulnerability

Feb 22, 2025
CVE-2025-24533
CVSS 5.4EPSS 0%medium

WordPress MetaSlider plugin <= 3.92.0 - Cross Site Request Forgery (CSRF) vulnerability

Jan 27, 2025
CVE-2024-3285
CVSS 6.4EPSS 0%medium

Slider, Gallery, and Carousel by MetaSlider – Responsive WordPress Slideshows <= 3.70.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via metaslider Shortcode

Apr 11, 2024
CVE-2023-1473
CVSS 6.1medium

Responsive WordPress Slideshows 3.29.0 - Reflected XSS

Apr 17, 2023🔧 No Patch
CVE-2022-2823
CVSS 4.8medium

Slider, Gallery, and Carousel by MetaSlider < 3.27.9 - Admin+ Stored Cross Site Scripting

Oct 10, 2022🔧 No Patch

Monitor metaslider in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.

metaslider Security Vulnerabilities & Risk Score | 10 CVEs | SecAlerts - SecAlerts