CVE-2026-42710: 10web Slider By 10web

High severity, CVSS 7.6. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in 10Web Slider by 10Web slider-wd allows Blind SQL Injection.This issue affects Slider by 10Web: from n/a through 1.2.63.

Affected products

  • 10web Slider By 10web: up to and including 1.2.63

Published 2026-10-07. Last modified 2026-10-07.