Uix Slideshow

Uix Slideshow has one disclosed vulnerability in the WordSec catalog, all reported in 2024; it is fixed as of September 2026. Their average CVSS score is 7.3, and the most serious one scores 7.3 out of 10. Severity breakdown: 0 critical and 1 high.

The most common weakness is Code Injection, behind 1 of the records (100%).

The one issue recorded for Uix Slideshow has a vendor fix available, so running the current release closes it.

All of these findings were reported by Francesco Carlucci. Uix Slideshow is installed on roughly 20 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.

Strategic Overview

Avg CVSSHigh
7.3/ 10
Patch Coverage100%
Open

0

Fixed

1

Get automatic notifications for all Uix Slideshow vulnerabilities before they are exploited.

Highest severity on recordCVSS 7.3CVE-2024-9839

Uix Slideshow <= 1.6.5 - Unauthenticated Arbitrary Shortcode Execution

Read the full analysis

Vulnerability Records

1 records
Uix Slideshow banner
Latestv1.6.7

Uix Slideshow

UIUX Lab

Author

UIUX Lab

0.0(0)
0/100
Last Updated
2026-06-12 (3mo ago)
Active Installs
20+
Downloads
9,917
Requires WP
4.2+
Requires PHP
5.6+
Tested up to
WP 7.0.4
Created
2016-09-13 (10y ago)

This plugin is a simple way to build, organize and display slideshow into any existing WordPress theme. Using template file to embed your theme. Insert slideshow anywhere on your site using a custom post type. Adding Uix Slideshow to Web Pages There are two different ways you can add the Uix Slideshow widget to your site’s pages: (1) Shortcode – Embed a shortcode into the editor of any post, page, or custom post type. Use [uix_slideshow_output] to add it to your Post, Widgets or Page content. Now this shortcode has one attributes. Uix Slideshow show at most can be customized using the “show” parameter. Go to your WordPress admin panel, edit or create a new post (or page). You’ll see a Uix Slideshow button in the toolbar. (2) Template tags – Add a simple PHP function to one of your theme’s template files. Place <?php get_template_part( 'tmpl', 'uix_slideshow' ); ?> in your templates. Custom Usage You can overview the original styles to overwrite it. It will be on creating new styles to your website, without modifying original .css files. Go to “Uix Slideshow” in the WordPress Administration Screens, then link to a specific tab like “Custom CSS”. There is a second way, make a new Cascading Style Sheet (CSS) document which name to “uix-slideshow-custom.css” to your templates directory ( “/wp-content/themes/{your-theme}/” or “/wp-content/themes/{your-theme}/assets/css/” ). You can connect to your site via an FTP client, make the changes and then upload the file back to the server. Once you have created an existing CSS file, Uix Slideshow will use it as a default style sheet to your WordPress Theme. Of course, Uix Slideshow’s function of “Custom CSS” is still valid. Note: Making a new javascrpt (.js) document which name to “uix-slideshow-custom.js” to your templates directory ( “/wp-content/themes/{your-theme}/” or “/wp-content/themes/{your-theme}/assets/js/” ). Once you have created an existing JS file, Uix Slideshow will use it as a default script to your WordPress Theme.

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C