plugin

Flexi Product Slider Grid Vulnerabilities

1 known security issue reported for the Flexi Product Slider Grid WordPress plugin. Most recent disclosed Feb 13, 2026.

1 high

Running Flexi Product Slider Grid on your site? Check whether your installed version is affected.

Scan your site free

Flexi Product Slider and Grid for WooCommerce <= 1.0.5 - Authenticated (Contributor+) Local File Inclusion via 'theme' Shortcode Attribute

high

The Flexi Product Slider and Grid for WooCommerce plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.0.5 via the `flexipsg_carousel` shortcode. This is due to the `theme` parameter being directly concatenated into a file path without proper sanitization or validation, all...

CVSS:
7.5
Affected:
up to 1.0.5
Fix:
No patched version reported
Disclosed:
Feb 13, 2026

CVE-2026-1988 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database