Skip to main content

Vendor/product archive

wpdevart / gallery CVEs

Beta · best-effort

7 CVEs tagged to wpdevart / gallery0 Critical, 2 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2023-45631

Published Jan 2, 2025

Missing Authorization vulnerability in wpdevart Responsive Image Gallery, Gallery Album allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-37542

Published Jul 6, 2024

Missing Authorization vulnerability in WpDevArt Responsive Image Gallery, Gallery Album.This issue affects Responsive Image Gallery, Gallery Album: from n/a through 2.0.3.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-35750

Published Jun 8, 2024

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpdevart Responsive Image Gallery, Gallery Album.This issue affects Responsiv…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-30550

Published Mar 31, 2024

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpdevart Responsive Image Gallery, Gallery Album allows Reflected XSS.This is…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2024-31120

Published Mar 31, 2024

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpdevart Responsive Image Gallery, Gallery Album allows Stored XSS.This issue…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-45630

Published Oct 18, 2023

Unauth. Stored Cross-Site Scripting (XSS) vulnerability in wpdevart Gallery – Image and Video Gallery with Thumbnails plugin <= 2.0.3 versions.

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2022-1946

Published Jul 4, 2022

The Gallery WordPress plugin before 2.0.0 does not sanitise and escape a parameter before outputting it back in the response of an AJAX action (available to both unauthenticated a…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1