Vulnerabilities and security researches forgt3-photo-video-gallery gt3-photo-video-gallery
Direction: ascendingJun 07, 2024
Photo Gallery – GT3 Image Gallery & Gutenberg Block Gallery # CVE-2024-4035
- CVE, Research URL
- Home page URL
-
Security reports for Photo Gallery – GT3 Image Gallery & Gutenberg Block Gallery
- Date
- Apr 25, 2024
- Research Description
- The Photo Gallery – GT3 Image Gallery & Gutenberg Block Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via image alt text in all versions up to, and including, 2.7.7.21 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Feb 05, 2025
Photo Gallery – GT3 Image Gallery & Gutenberg Block Gallery # CVE-2025-24707
- CVE, Research URL
- Home page URL
-
Security reports for Photo Gallery – GT3 Image Gallery & Gutenberg Block Gallery
- Date
- Feb 03, 2025
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GT3 Photo Gallery Photo Gallery - GT3 Image Gallery & Gutenberg Block Gallery allows Reflected XSS. This issue affects Photo Gallery - GT3 Image Gallery & Gutenberg Block Gallery: from n/a through 2.7.7.24.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
May 09, 2025
Photo Gallery – GT3 Image Gallery & Gutenberg Block Gallery # CVE-2025-47677
- CVE, Research URL
- Home page URL
-
Security reports for Photo Gallery – GT3 Image Gallery & Gutenberg Block Gallery
- Date
- May 07, 2025
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in gt3themes Photo Gallery - GT3 Image Gallery & Gutenberg Block Gallery allows Stored XSS. This issue affects Photo Gallery - GT3 Image Gallery & Gutenberg Block Gallery: from n/a through 2.7.7.25.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable