Wpdevart

Gallery

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.11%
  • Veröffentlicht 02.01.2025 12:15:09
  • Zuletzt bearbeitet 21.03.2025 18:52:09

Missing Authorization vulnerability in wpdevart Responsive Image Gallery, Gallery Album allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Responsive Image Gallery, Gallery Album: from n/a through 2.0.3.

  • EPSS 0.06%
  • Veröffentlicht 06.07.2024 13:15:10
  • Zuletzt bearbeitet 21.11.2024 09:24:02

Missing Authorization vulnerability in WpDevArt Responsive Image Gallery, Gallery Album.This issue affects Responsive Image Gallery, Gallery Album: from n/a through 2.0.3.

  • EPSS 0.3%
  • Veröffentlicht 08.06.2024 13:15:57
  • Zuletzt bearbeitet 21.11.2024 09:20:48

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpdevart Responsive Image Gallery, Gallery Album.This issue affects Responsive Image Gallery, Gallery Album: from n/a through 2.0.3.

  • EPSS 0.12%
  • Veröffentlicht 31.03.2024 20:15:09
  • Zuletzt bearbeitet 10.04.2025 20:44:07

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpdevart Responsive Image Gallery, Gallery Album allows Reflected XSS.This issue affects Responsive Image Gallery, Gallery Album: from n/a through 2...

  • EPSS 0.11%
  • Veröffentlicht 31.03.2024 19:15:49
  • Zuletzt bearbeitet 11.04.2025 14:46:40

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpdevart Responsive Image Gallery, Gallery Album allows Stored XSS.This issue affects Responsive Image Gallery, Gallery Album: from n/a through 2.0....

  • EPSS 0.08%
  • Veröffentlicht 18.10.2023 14:15:09
  • Zuletzt bearbeitet 21.11.2024 08:27:06

Unauth. Stored Cross-Site Scripting (XSS) vulnerability in wpdevart Gallery – Image and Video Gallery with Thumbnails plugin <= 2.0.3 versions.

Exploit
  • EPSS 0.8%
  • Veröffentlicht 04.07.2022 13:15:08
  • Zuletzt bearbeitet 21.11.2024 06:41:48

The Gallery WordPress plugin before 2.0.0 does not sanitise and escape a parameter before outputting it back in the response of an AJAX action (available to both unauthenticated and authenticated users), leading to a Reflected Cross-Site Scripting is...