Cross-site Scripting Vulnerability in LogicHunt Logo Slider Plugin
CVE-2026-24626
5.9MEDIUM
What is CVE-2026-24626?
The LogicHunt Logo Slider Plugin for WordPress contains a stored Cross-site Scripting vulnerability that can be exploited due to improper neutralization of user input during web page generation. This exposure allows attackers to inject malicious scripts into web pages viewed by users, compromising both user data and site integrity. Users of Logo Slider versions up to and including 4.9.0 should take immediate steps to mitigate this vulnerability to ensure their websites remain secure.
Affected Version(s)
Logo Slider 0 <= 5.1.1