CVE-2024-9018
- EPSS 0.65%
- Veröffentlicht 01.10.2024 09:15:05
- Zuletzt bearbeitet 07.10.2024 19:20:48
The WP Easy Gallery – WordPress Gallery Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the ‘key’ parameter in all versions up to, and including, 4.8.5 due to insufficient escaping on the user supplied parameter and lack of ...
CVE-2024-8436
- EPSS 0.63%
- Veröffentlicht 25.09.2024 01:15:46
- Zuletzt bearbeitet 26.09.2025 16:41:08
The WP Easy Gallery – WordPress Gallery Plugin plugin for WordPress is vulnerable to SQL Injection via the 'edit_imageId' and 'edit_imageDelete' parameters in all versions up to, and including, 4.8.5 due to insufficient escaping on the user supplied ...
CVE-2024-8437
- EPSS 0.13%
- Veröffentlicht 25.09.2024 01:15:46
- Zuletzt bearbeitet 29.05.2025 16:02:35
The WP Easy Gallery – WordPress Gallery Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several functions hooked via AJAX like wpeg_settings and wpeg_add_gallery in all versions up to, and includi...