A popular plugin for WordPress called Slider Revolution has a security issue that allows hackers to inject harmful code into web pages. This can happen if a user with a certain level of access uses a feature in the plugin called Add Layer. Only users with a specific role called “Author” or above can exploit this vulnerability, and only if an Administrator has given them permission to use the Slider Creation feature.