Vulnerabilities and security researches foreasy-media-gallery easy-media-gallery
Direction: ascendingJun 07, 2024
Gallery – Photo Albums Plugin # CVE-2015-7386
- CVE, Research URL
- Home page URL
- Application
- Date
- Sep 28, 2015
- Research Description
- Multiple cross-site scripting (XSS) vulnerabilities in includes/metaboxes.php in the Gallery - Photo Albums - Portfolio plugin 1.3.47 for WordPress allow remote authenticated users to inject arbitrary web script or HTML via the (1) Media Title or (2) Media Subtitle fields.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Apr 03, 2025
Gallery – Photo Albums Plugin # CVE-2025-31586
- CVE, Research URL
- Home page URL
- Application
- Date
- Mar 31, 2025
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GhozyLab Gallery – Photo Albums Plugin allows Stored XSS. This issue affects Gallery – Photo Albums Plugin: from n/a through 1.3.170.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable