CVE-2024-8442
Published
CVSS v3
6.4
MEDIUM
CVSS v2
N/A
Affected
1
PROJECT
Description
The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Blog widget in all versions up to, and including, 3.15.18 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
<p>Prime Slider is an Elementor addon that lets you build and customize a slider for any purpose. You can design a Hero Slider for your homepage, a Post Slider to feature recent articles, an Ecommerce Slider to highlight products, or a Content Slider to organize information in a clean, dynamic layout. Everything works smoothly inside Elementor’s drag-and-drop editor.</p>
<p>The plugin includes 30+ free widgets, 8 skins, 3 essential features, and 75+ ready-made sliders that help you create visually appealing and fully responsive designs.</p>
<p>Available Slider Types:</p>
<p>✅ Hero Slider<br />
✅ Logo Slider<br />
✅ Image Slider<br />
✅ Content Slider<br />
✅ Carousel Slider<br />
✅ Post Slider<br />
✅ Video Slider<br />
✅ WooCommerce Product Slider<br />
✅ Testimonial Slider and more</p>
<p>Prime Slider makes it simple to create sliders that adapt beautifully to any device or layout. Each widget is easy to customize and optimized for performance to help you deliver engaging user experiences without code.</p>
<p><strong><a href="https://primeslider.pro/demo/?utm_source=WordPress_repo&utm_medium=PrimeSlider&utm_campaign=ORG_Content" rel="nofollow ugc">Free Demo</a></strong> | <strong><a href="https://primeslider.pro/pricing/?utm_source=WordPress_repo&utm_medium=PrimeSlider&utm_campaign=ORG_Content" rel="nofollow ugc">Prime Slider Pro</a></strong> | <strong><a href="https://bdthemes.com/all-knowledge-base-of-prime-slider/?utm_source=WordPress_repo&utm_medium=PrimeSlider&utm_campaign=ORG_Content" rel="nofollow ugc">Documentation</a></strong></p>
<h4>Featured on WPTuts:</h4>
<p><span class="embed-youtube" style="text-align:center; display: block;"><iframe loading="lazy" class="youtube-player" width="750" height="422" src="https://www.youtube.com/embed/KwDq6wiS6go?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent" allowfullscreen="true" style="border:0;" sandbox="allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox"></iframe></span></p>
<h3>Prime Slider – An Elementor addon to Add and Design Sliders Effortlessly</h3>
<p>There are some key things our plugin has covered to give you a boost in your website slider creation.</p>
<ul>
<li>
<p><strong>Design and Usability:</strong> You can use distinct design elements, including buttons, titles, arrows and more.</p>
</li>
<li>
<p><strong>Customization Options:</strong> You can choose or select various slide layouts, colors and fonts, slider animations, and the appearance and placement of navigation elements.</p>
</li>
<li>
<p><strong>Effortless Workflow:</strong> You can arrange slides and place content utilizing visual editors.</p>
</li>
<li>
<p><strong>Boosts user engagement:</strong> Encourage users to click, explore, and stay longer.</p>
</li>
<li>
<p><strong>Showcases prioritized content:</strong> Feature important content, including Promotions, Sales, etc.</p>
</li>
<li>
<p><strong>Improved Storytelling:</strong> Engage users by telling a visual story with ease.</p>
</li>
<li>
<p><strong>Image SEO basics:</strong> You can set titles and alt text on images to follow common on-page SEO practices</p>
</li>
</ul>
<h3>Features</h3>
<ul>
<li>
<p><strong>Interactive elements:</strong> Enable you to engage with slides through clickable elements, including interactive videos.</p>
</li>
<li>
<p><strong>Responsive Design:</strong> Layouts adapt for phones, tablets, and desktops.</p>
</li>
<li>
<p><strong>Autoplay with pause functionality:</strong> Allows you to set automatic slide transitions with the option to pause on hover.</p>
</li>
<li>
<p><strong>Multimedia Support:</strong> This includes images, videos, text, and more.</p>
</li>
<li>
<p><strong>User Interaction:</strong> Allows easy-to-use navigation controls for users to browse through slides manually.</p>
</li>
<li>
<p><strong>Performance Optimization:</strong> Lightweight, fast-loading, and caching-friendly for efficiency.</p>
</li>
<li>
<p><strong>Integration and Compatibility:</strong> Works seamlessly with Elementor plugins and WordPress themes.</p>
</li>
<li>
<p><strong>Support and Documentation:</strong> Provides guides and tutorials to help you set up and customize the slider.</p>
</li>
<li>
<p><strong>SEO Optimization:</strong> Allows you to add titles, alt text and titles to images for better SEO.</p>
</li>
<li>
<p><strong>Accessibility:</strong> Make your slider accessible to screen readers.</p>
</li>
<li>
<p><strong>Multilingual Support:</strong> RTL and translation-ready for global audiences.</p>
</li>
<li>
<p><strong>Regular Updates:</strong> Frequent updates for new features, security, bug fixes and more.</p>
</li>
</ul>
<h3>Free Core Widgets of Prime Slider for Elementor 🔥</h3>
<h4>Post 👇</h4>
<ul>
<li><a href="https://primeslider.pro/demo/blog-base/" rel="nofollow ugc">Blog</a> – Blog based slider for WordPress with a visually appealing interface and smooth transitions.</li>
<li><a href="https://primeslider.pro/demo/blog-skin-coral/" rel="nofollow ugc">Coral Slider Skin</a> – Coral skin enhances your blog slider with thumb post modules and scroll-down navigation.</li>
<li><a href="https://primeslider.pro/demo/blog-skin-folio/" rel="nofollow ugc">Folio Slider Skin</a> – Folio skin provides a modern, automated blog slider with clear graphics and smooth transitions.</li>
<li><a href="https://primeslider.pro/demo/blog-skin-zinest/" rel="nofollow ugc">Zinest Slider Skin</a> – Vibrant post interface with animated blog info and thumb post gallery for better user engagement.</li>
<li><a href="https://primeslider.pro/demo/fiestar/" rel="nofollow ugc">Fiestar</a> – A polymorph slider combining post accordion and slider for an enhanced landing page feature.</li>
<li><a href="https://primeslider.pro/demo/flogia/" rel="nofollow ugc">Flogia</a> – Retina-ready slider with animated navigation and floating thumb gallery to engage visitors.</li>
<li><a href="https://primeslider.pro/demo/mercury/" rel="nofollow ugc">Mercury</a> – A minimalistic Elementor post slider with smooth transitions, great for showcasing blog posts.</li>
<li><a href="https://primeslider.pro/demo/pacific/" rel="nofollow ugc">Pacific</a> – Simple and effective slider with a dramatic post background and seamless navigation.</li>
<li><a href="https://primeslider.pro/demo/rubix/" rel="nofollow ugc">Rubix</a> – Unique slider with a fresh and innovative design, perfect for dynamic content delivery.</li>
<li><a href="https://primeslider.pro/demo/storker/" rel="nofollow ugc">Storker</a> – Fast-paced post delivery with smooth transition effects, ideal for engaging audiences.</li>
<li><a href="https://primeslider.pro/demo/vertex/" rel="nofollow ugc">Vertex</a> – A seamless slider combining visual graphics with cool animations for optimal user experience.</li>
</ul>
<h4>Custom</h4>
<ul>
<li><a href="https://primeslider.pro/demo/general/" rel="nofollow ugc">General</a> – Optimistic slider with smooth transitions and text animations, suitable for any website.</li>
<li><a href="https://primeslider.pro/demo/general-skin-crelly/" rel="nofollow ugc">Crelly Slider Skin</a> – Crelly skin adds fluid color swatches and a wide canvas to bring out the beauty of your posts.</li>
<li><a href="https://primeslider.pro/demo/general-skin-meteor/" rel="nofollow ugc">Meteor Slider Skin</a> – Meteor skin offers sleek minimalism with slow transitions and thumb posts for engaging interactions.</li>
<li><a href="https://primeslider.pro/demo/general-skin-slide/" rel="nofollow ugc">Slide Slider Skin</a> – A minimalistic design focused on your business identity, great for hero pages.</li>
<li><a href="https://primeslider.pro/demo/isolate/" rel="nofollow ugc">Isolate</a> – Product-focused slider featuring images, mega heading and interactive navigation buttons.</li>
<li><a href="https://primeslider.pro/demo/isolate-skin-locate/" rel="nofollow ugc">Locate Slider Skin</a> – Minimalistic design that showcases your product with colorful social share buttons and smooth navigation.</li>
<li><a href="https://primeslider.pro/demo/isolate-skin-slice/" rel="nofollow ugc">Slice Slider Skin</a> – Heavier version of Isolate with more graphics, transitions and a thumb video button.</li>
<li><a href="https://primeslider.pro/demo/dragon/" rel="nofollow ugc">Dragon</a> – A charming slider perfect for displaying posts, products and services with smart navigation and animations.</li>
<li><a href="https://primeslider.pro/demo/elysium/" rel="nofollow ugc">Elysium</a> – Elegant slider for showcasing featured products or services with a smooth navigation interface.</li>
<li><a href="https://primeslider.pro/demo/mount/" rel="nofollow ugc">Mount</a> – Ideal for impactful hero pages with broad animated headlines and HD background transitions.</li>
<li><a href="https://primeslider.pro/demo/omatic/" rel="nofollow ugc">Omatic</a> – A versatile slider designed for a wide range of websites with smooth transitions and modern effects.</li>
<li><a href="https://primeslider.pro/demo/sequester/" rel="nofollow ugc">Sequester</a> – Engaging minimalistic slider with animated navigation, mega heading and social share buttons.</li>
<li><a href="https://primeslider.pro/demo/sniper/" rel="nofollow ugc">Sniper</a> – Perfect for fashion or portfolio websites, featuring a full-width background and thumb gallery for a dynamic interface.</li>
<li><a href="https://primeslider.pro/demo/tango/" rel="nofollow ugc">Tango</a> – A carousel-type slider that focuses on one piece of content at a time, making it perfect for product or image displays.</li>
</ul>
<h4>Fullscreen 👇</h4>
<ul>
<li><a href="https://primeslider.pro/demo/multiscroll/" rel="nofollow ugc">Multiscroll</a> – Creative, dynamic full-screen slider with cursor scroll-based transitions for an engaging user experience.</li>
<li><a href="https://primeslider.pro/demo/pagepiling/" rel="nofollow ugc">Pagepiling</a> – Minimalistic background graphics and sleek slider scrolling effects, offering a fun and fast page transition experience.</li>
</ul>
<h3>Widgets for WooCommerce 🔥</h3>
<ul>
<li><a href="https://primeslider.pro/demo/woocommerce/" rel="nofollow ugc">WooCommerce</a> – Display your products in a slider with detailed information, including price and add-to-cart options.</li>
<li><a href="https://primeslider.pro/demo/woocircle/" rel="nofollow ugc">Woocircle</a> – Showcase products in circular layouts for a fresh and unique visual appeal.</li>
<li><a href="https://primeslider.pro/demo/woolamp/" rel="nofollow ugc">Woolamp</a> – A minimalistic WooCommerce slider designed to enhance the customer shopping experience with smooth navigation.</li>
</ul>
<h3>Handy Features 🔥</h3>
<ul>
<li><a href="https://www.elementpack.pro/knowledge-base/how-to-use-live-copy-option/" rel="nofollow ugc">Live Copy or Paste</a> – Copy and paste demo content directly from the Post Kit website to your own site.</li>
<li><a href="https://www.elementpack.pro/knowledge-base/how-to-use-element-pack-duplicator/" rel="nofollow ugc">Duplicator</a> – Duplicate posts, pages or Elementor templates with ease for faster design replication.</li>
</ul>
<p>More free widgets and extensions are coming soon…</p>
<h3>Pro Widgets of Prime Slider for Elementor 🔥</h3>
<h4>Post 👇</h4>
<ul>
<li><a href="https://primeslider.pro/demo/fluent/" rel="nofollow ugc">Fluent</a> – A full-width slider designed to create a dynamic and engaging blog interface.</li>
<li><a href="https://primeslider.pro/demo/knily/" rel="nofollow ugc">Knily</a> – A wide base display slider with floating thumb tabs for showcasing content in style.</li>
<li><a href="https://primeslider.pro/demo/marble/" rel="nofollow ugc">Marble</a> – A unique slider that presents posts like a horizontal timeline with customizable options.</li>
<li><a href="https://primeslider.pro/demo/material/" rel="nofollow ugc">Material</a> – A clean and professional slider that gives your content a polished and sophisticated look.</li>
</ul>
<h4>Custom 👇</h4>
<ul>
<li><a href="https://primeslider.pro/demo/astoria/" rel="nofollow ugc">Astoria</a> – Elegant slider for hero pages with social share buttons for a more engaging visitor experience.</li>
<li><a href="https://primeslider.pro/demo/avatar/" rel="nofollow ugc">Avatar</a> – Creative image slider with a breathtaking interface to take your content to the next level.</li>
<li><a href="https://primeslider.pro/demo/crossroad/" rel="nofollow ugc">Crossroad</a> – A fun and unique slider for displaying posts with a new concept of art.</li>
<li><a href="https://primeslider.pro/demo/custom/" rel="nofollow ugc">Custom</a> – Create your own custom template and select it in the custom slider to personalize your design.</li>
<li><a href="https://primeslider.pro/demo/escape/" rel="nofollow ugc">Escape</a> – Escape slider offers a bold design with creative navigation and animations for a modern site look.</li>
<li><a href="https://primeslider.pro/demo/flexure/" rel="nofollow ugc">Flexure</a> – Full-width slider with background synchronization and a tab-like layout to change images by hovering over titles.</li>
<li><a href="https://primeslider.pro/demo/fortune/" rel="nofollow ugc">Fortune</a> – Fortune slider makes showcasing content easy with dynamic transitions and engaging effects.</li>
<li><a href="https://primeslider.pro/demo/monster/" rel="nofollow ugc">Monster</a> – A minimalistic content slider for featured posts or products with a full-width layout and smooth navigation.</li>
<li><a href="https://primeslider.pro/demo/paranoia/" rel="nofollow ugc">Paranoia</a> – A unique, eccentric slider with fun post layout animations for a memorable user experience.</li>
<li><a href="https://primeslider.pro/demo/pieces/" rel="nofollow ugc">Pieces</a> – Futuristic slider designed for blog sites with engaging, fun animations and transitions.</li>
<li><a href="https://primeslider.pro/demo/prism/" rel="nofollow ugc">Prism</a> – The pristine slider is designed to capture attention with centered item images and a clean background.</li>
<li><a href="https://primeslider.pro/demo/coddle/" rel="nofollow ugc">Coddle</a> – A simple, elegant slider perfect for delivering key content with seamless transitions.</li>
<li><a href="https://primeslider.pro/demo/reveal/" rel="nofollow ugc">Reveal</a> – A slider with active reveal transitions designed to boost user engagement and attention.</li>
<li><a href="https://primeslider.pro/demo/woohotspot/" rel="nofollow ugc">Woo HotSpot</a> – WooCommerce-focused slider designed to make product discovery easier for customers.</li>
<li><a href="https://primeslider.pro/demo/titanic/" rel="nofollow ugc">Titanic</a> – Titanic slider offers stunning, large-scale content slides for impactful presentations.</li>
<li><a href="https://primeslider.pro/demo/pandora/" rel="nofollow ugc">Pandora</a> – A sleek, dynamic slider with fluid transitions and a modern design.</li>
<li><a href="https://primeslider.pro/demo/turnar/" rel="nofollow ugc">Turnar</a> – Dynamic slider with rotating elements and interactive transitions for captivating visual storytelling.</li>
<li><a href="https://primeslider.pro/demo/motion/" rel="nofollow ugc">Motion</a> – Animated slider featuring smooth motion effects and kinetic elements for enhanced user engagement. </li>
</ul>
<h4>Remote Control 👇</h4>
<ul>
<li><a href="https://primeslider.pro/demo/remote-arrows/" rel="nofollow ugc">Remote Arrows</a> – Separate the navigation from sliders and use remote arrows to control them from a different place on your site.</li>
<li><a href="https://primeslider.pro/demo/remote-fraction/" rel="nofollow ugc">Remote Fraction</a> – Add fraction navigation to any slider, regardless of its position, with this remote control widget.</li>
<li><a href="https://primeslider.pro/demo/remote-pagination/" rel="nofollow ugc">Remote Pagination</a> – Display the number of posts left in the query with remote pagination for enhanced user interaction.</li>
<li><a href="https://primeslider.pro/demo/remote-thumbs/" rel="nofollow ugc">Remote Thumbs</a> – Link a thumb gallery to any slider to make it more interactive and visually appealing.</li>
</ul>
<h3>3rd Party Widgets 🔥</h3>
<ul>
<li><a href="https://primeslider.pro/demo/event-calendar/" rel="nofollow ugc">Event Calendar</a> – Display event countdowns and details in a beautifully designed calendar slider.</li>
</ul>
<h3>Widgets for WooCommerce 🔥</h3>
<ul>
<li><a href="https://primeslider.pro/demo/wooexpand/" rel="nofollow ugc">Wooexpand</a> – Accordion-style slider fully integrated with WooCommerce for better product showcasing.</li>
<li><a href="https://primeslider.pro/demo/woostand/" rel="nofollow ugc">WooStand</a> – An eye-grabbing WooCommerce slider to present featured products with smooth transitions.</li>
</ul>
<h3>Handy Extension 🔥</h3>
<ul>
<li><a href="https://primeslider.pro/demo/adaptive-bg/" rel="nofollow ugc">Adaptive Background</a> – Automatically adjusts the background image or color based on the content to create dynamic, engaging visuals.</li>
</ul>
<h3>Featured By – Famous Publications 🎇</h3>
<h4>themesCode:</h4>
<p><span class="embed-youtube" style="text-align:center; display: block;"><iframe loading="lazy" class="youtube-player" width="750" height="422" src="https://www.youtube.com/embed/WNvdJBS08T8?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent" allowfullscreen="true" style="border:0;" sandbox="allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox"></iframe></span></p>
<p>Thanks to Imran Emu, a professional Web Designer and Developer, for featuring Prime Slider on the YouTube channel titled themesCode and finding it helpful for his viewers.</p>
<p><a href="https://youtu.be/3vR2zk_2LXc" rel="nofollow ugc">Uriel Soto:</a></p>
<p>Uriel Soto, expert in WordPress and Elementor, makes helpful WordPress tutorials for everyone. Prime Slider, an add-on for Elementor, has been featured on Youtube Channel named Uriel Soto by this guy.</p>
<p><a href="https://youtu.be/h6SvBsNfP7o" rel="nofollow ugc">Fran Salas – PluginsWeb:</a></p>
<p>A dedicated WordPress enthusiast, Fran Salas creates informative video content focused on plugins, templates and extensions. His tutorial-style videos showcase tools like Prime Slider, an advanced add-on for Elementor, demonstrating its features and capabilities in detail.</p>
<p><a href="https://youtu.be/ZeogOxqdKJI?t=435" rel="nofollow ugc">Brainstorm Force:</a></p>
<p>A mastermind of outstanding WordPress products, including the Astra theme, has a YouTube channel. Thankful to the energetic team who made an excellent video spotlighting Prime Slider and shared it on Brainstorm Force, a channel for WordPress Tutorials.</p>
<h3>Common Issues and Solutions: 🐣</h3>
<ol>
<li><strong>Elementor editor fails to load</strong><br />
Ans. This is due to your server’s PHP settings. You can increase the PHP memory limit from the wp-config.php file or php.ini file<br />
<a href="https://bdthemes.com/fix-elementor-stuck-on-loading-screen-instantly/" rel="nofollow ugc">View Documentation</a></li>
</ol>
<h3>Need Help? 🙂</h3>
<p>Is there any feature that you want to get in this plugins?<br />
Please use the suggest page to message us about the features we should add to our products.<br />
Needs assistance to use these plugins?<br />
Feel free to <a href="https://bdthemes.com/support/" rel="nofo