cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches foreasy-media-gallery easy-media-gallery

Direction: ascending
Jun 07, 2024

Gallery – Photo Albums Plugin # CVE-2015-7386

CVE, Research URL

CVE-2015-7386

Date
Sep 28, 2015
Research Description
Multiple cross-site scripting (XSS) vulnerabilities in includes/metaboxes.php in the Gallery - Photo Albums - Portfolio plugin 1.3.47 for WordPress allow remote authenticated users to inject arbitrary web script or HTML via the (1) Media Title or (2) Media Subtitle fields.
Affected versions
Min -, max -.
Status
vulnerable
Apr 03, 2025

Gallery – Photo Albums Plugin # CVE-2025-31586

CVE, Research URL

CVE-2025-31586

Date
Mar 31, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GhozyLab Gallery – Photo Albums Plugin allows Stored XSS. This issue affects Gallery – Photo Albums Plugin: from n/a through 1.3.170.
Affected versions
Min -, max -.
Status
vulnerable