CVE-2026-7636: Smub Slider By Soliloquy – Responsive Image Slider For WordPress
Medium severity, CVSS 4.3. EPSS: 0.4% chance of exploitation in the next 30 days.
The Slider by Soliloquy – Responsive Image Slider for WordPress plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.8.1 via the map_meta_cap. This makes it possible for authenticated attackers, with subscriber-level access and above, to extract draft slider metadata including unpublished media URLs, captions, and slider configuration authored by administrators or editors.
Affected products
- Smub Slider By Soliloquy – Responsive Image Slider For WordPress: up to and including 2.8.1
Published 2026-05-22. Last modified 2026-07-23.