Pricing
Case studies
Login
Start trial
Slider Revolution
ThemePunch
Developer
N/A
Latest version
N/A
Installations
N/A
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
16 fixed
4 Mitigation rules
Missing Authorization to Authenticated (Contributor+) Arbitrary File Read vulnerability
<= 6.7.37
Oct 9, 2025
Authenticated (Contributor+) Arbitrary File Read via 'used_svg' and 'used_images' vulnerability
<= 6.7.36
Aug 29, 2025
Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload vulnerability
<= 6.7.18
Oct 1, 2024
Cross Site Scripting (XSS) vulnerability
<= 6.7.13
Jun 28, 2024
Cross Site Scripting (XSS) vulnerability
< 6.7.11
May 28, 2024
Unauthenticated Broken Access Control vulnerability
< 6.7.0
May 28, 2024
Authenticated (Author+) Stored Cross-Site Scripting via htmltag Parameter vulnerability
<= 6.7.7
May 1, 2024
Authenticated (Author+) Stored Cross-Site Scripting vulnerability
<= 6.6.20
Apr 9, 2024
Author+ Arbitrary File Upload vulnerability
<= 6.6.15
Nov 14, 2023
Cross Site Scripting (XSS) vulnerability
<= 6.6.14
Nov 14, 2023
Author+ Remote Code Execution Vulnerability
<= 6.6.12
May 30, 2023
XSS
<= 4.2.2
Jun 30, 2015
Multiple Vulnerabilities
<= 3.0.95
Jun 30, 2015
File Upload and Execute
<= 3.0.95
May 8, 2015
Arbitrary File Download
< 4.2
Mar 30, 2015
Shell Upload Exploit
<= 3.0.95
Nov 26, 2014