CVE-2022-3991
Published Nov 29, 2022The Photospace Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via its settings parameters saved via the update() function in versions up to, and includi…
Vendor archive
2 CVEs tagged to vendor photospace_gallery_project — 0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.
The Photospace Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via its settings parameters saved via the update() function in versions up to, and includi…
Broken Access Control vulnerability in Dean Oakley's Photospace Gallery plugin <= 2.3.5 at WordPress allows users with subscriber or higher role to change plugin settings.