4.7
CVSSv3

CVE-2024-13627

CVSSv4: NA | CVSSv3: 4.7 | CVSSv2: NA | VMScore: 570 | EPSS: 0.00017 | KEV: Not Included
Published: 17/02/2025 Updated: 19/02/2025

Vulnerability Summary

Reflected XSS Vulnerability in OWL Carousel Slider WordPress Plugin

The OWL Carousel Slider WordPress plugin up to and including 2.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.

Vulnerable Product Search on Vulmon Subscribe to Product

unknown owl carousel slider