cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forphoto-gallery photo-gallery

Direction: ascending
Jun 06, 2024

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2021-24363

CVE, Research URL

CVE-2021-24363

Date
Aug 16, 2021
Research Description
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery WordPress plugin before 1.5.75 did not ensure that uploaded files are kept inside its uploads folder, allowing high privilege users to put images/SVG anywhere in the filesystem via a path traversal vector
Affected versions
max 1.5.79.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2021-24139

CVE, Research URL

CVE-2021-24139

Date
Mar 18, 2021
Research Description
Unvalidated input in the Photo Gallery (10Web Photo Gallery) WordPress plugin, versions before 1.5.55, leads to SQL injection via the frontend/models/model.php bwg_search_x parameter.
Affected versions
max 1.5.55.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2021-24291

CVE, Research URL

CVE-2021-24291

Date
May 14, 2021
Research Description
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery WordPress plugin before 1.5.69 was vulnerable to Reflected Cross-Site Scripting (XSS) issues via the gallery_id, tag, album_id and _id GET parameters passed to the bwg_frontend_data AJAX action (available to both unauthenticated and authenticated users)
Affected versions
max 1.5.69.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2021-24362

CVE, Research URL

CVE-2021-24362

Date
Aug 16, 2021
Research Description
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery WordPress plugin before 1.5.75 did not ensure that uploaded SVG files added to a gallery do not contain malicious content. As a result, users allowed to add images to gallery can upload an SVG file containing JavaScript code, which will be executed when accessing the image directly (ie in the /wp-content/uploads/photo-gallery/ folder), leading to a Cross-Site Scripting (XSS) issue
Affected versions
max 1.5.77.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2021-24310

CVE, Research URL

CVE-2021-24310

Date
Jun 01, 2021
Research Description
The Photo Gallery by 10Web - Mobile-Friendly Image Gallery WordPress plugin before 1.5.67 did not properly sanitise the gallery title, allowing high privilege users to create one with XSS payload in it, which will be triggered when another user will view the gallery list or the affected gallery in the admin dashboard. This is due to an incomplete fix of CVE-2019-16117
Affected versions
max 1.5.67.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2020-9335

CVE, Research URL

CVE-2020-9335

Date
Feb 25, 2020
Research Description
Multiple stored XSS vulnerabilities exist in the 10Web Photo Gallery plugin before 1.5.46 WordPress. Successful exploitation of this vulnerability would allow a authenticated admin user to inject arbitrary JavaScript code that is viewed by other users.
Affected versions
max 1.5.46.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2022-0169

CVE, Research URL

CVE-2022-0169

Date
Mar 14, 2022
Research Description
The Photo Gallery by 10Web WordPress plugin before 1.6.0 does not validate and escape the bwg_tag_id_bwg_thumbnails_0 parameter before using it in a SQL statement via the bwg_frontend_data AJAX action (available to unauthenticated and authenticated users), leading to an unauthenticated SQL injection
Affected versions
max 1.6.0.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2019-16119

CVE, Research URL

CVE-2019-16119

Date
Sep 09, 2019
Research Description
SQL injection in the photo-gallery (10Web Photo Gallery) plugin before 1.5.35 for WordPress exists via the admin/controllers/Albumsgalleries.php album_id parameter.
Affected versions
max 1.5.35.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2021-25041

CVE, Research URL

CVE-2021-25041

Date
Dec 06, 2021
Research Description
The Photo Gallery by 10Web WordPress plugin before 1.5.68 is vulnerable to Reflected Cross-Site Scripting (XSS) issues via the bwg_album_breadcrumb_0 and shortcode_id GET parameters passed to the bwg_frontend_data AJAX action
Affected versions
max 1.5.68.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2019-16117

CVE, Research URL

CVE-2019-16117

Date
Sep 09, 2019
Research Description
Cross site scripting (XSS) in the photo-gallery (10Web Photo Gallery) plugin before 1.5.35 for WordPress exists via admin/models/Galleries.php.
Affected versions
max 1.5.35.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2019-16118

CVE, Research URL

CVE-2019-16118

Date
Sep 09, 2019
Research Description
Cross site scripting (XSS) in the photo-gallery (10Web Photo Gallery) plugin before 1.5.35 for WordPress exists via admin/controllers/Options.php.
Affected versions
max 1.5.35.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2015-9380

CVE, Research URL

CVE-2015-9380

Date
Aug 30, 2019
Research Description
The photo-gallery plugin before 1.2.42 for WordPress has CSRF.
Affected versions
max 1.2.42.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2015-1394

CVE, Research URL

CVE-2015-1394

Date
Feb 08, 2020
Research Description
Multiple cross-site scripting (XSS) vulnerabilities in the Photo Gallery plugin before 1.2.11 for WordPress allow remote authenticated users to inject arbitrary web script or HTML via the (1) sort_by, (2) sort_order, (3) items_view, (4) dir, (5) clipboard_task, (6) clipboard_files, (7) clipboard_src, or (8) clipboard_dest parameters in an addImages action to wp-admin/admin-ajax.php.
Affected versions
max 1.2.11.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2017-12977

CVE, Research URL

CVE-2017-12977

Date
Aug 21, 2017
Research Description
The Web-Dorado "Photo Gallery by WD - Responsive Photo Gallery" plugin before 1.3.51 for WordPress has a SQL injection vulnerability related to bwg_edit_tag() in photo-gallery.php and edit_tag() in admin/controllers/BWGControllerTags_bwg.php. It is exploitable by administrators via the tag_id parameter.
Affected versions
max 1.3.51.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2022-1281

CVE, Research URL

CVE-2022-1281

Date
May 02, 2022
Research Description
The Photo Gallery WordPress plugin through 1.6.3 does not properly escape the $_POST['filter_tag'] parameter, which is appended to an SQL query, making SQL Injection attacks possible.
Affected versions
max 1.6.3.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2019-14313

CVE, Research URL

CVE-2019-14313

Date
Jul 30, 2019
Research Description
A SQL injection vulnerability exists in the 10Web Photo Gallery plugin before 1.5.31 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system via filemanager/model.php.
Affected versions
max 1.5.31.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2015-2324

CVE, Research URL

CVE-2015-2324

Date
Feb 20, 2018
Research Description
Cross-site scripting (XSS) vulnerability in the filemanager in the Photo Gallery plugin before 1.2.13 for WordPress allows remote authenticated users with edit permission to inject arbitrary web script or HTML via unspecified vectors.
Affected versions
max 1.2.13.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2014-6315

CVE, Research URL

CVE-2014-6315

Date
Oct 10, 2014
Research Description
Multiple cross-site scripting (XSS) vulnerabilities in the Web-Dorado Photo Gallery plugin 1.1.30 and earlier for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) callback, (2) dir, or (3) extensions parameter in an addImages action to wp-admin/admin-ajax.php.
Affected versions
max 1.1.31.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2022-1282

CVE, Research URL

CVE-2022-1282

Date
May 02, 2022
Research Description
The Photo Gallery by 10Web WordPress plugin before 1.6.3 does not properly sanitize the $_GET['image_url'] variable, which is reflected back to the users when executing the editimage_bwg AJAX action.
Affected versions
max 1.6.3.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2019-14797

CVE, Research URL

CVE-2019-14797

Date
Aug 09, 2019
Research Description
The 10Web Photo Gallery plugin before 1.5.23 for WordPress has authenticated stored XSS.
Affected versions
max 1.5.23.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2019-14798

CVE, Research URL

CVE-2019-14798

Date
Aug 09, 2019
Research Description
The 10Web Photo Gallery plugin before 1.5.25 for WordPress has Authenticated Local File Inclusion via directory traversal in the wp-admin/admin-ajax.php?action=shortcode_bwg tagtext parameter.
Affected versions
max 1.5.25.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2015-1393

CVE, Research URL

CVE-2015-1393

Date
Feb 02, 2015
Research Description
SQL injection vulnerability in the Photo Gallery plugin before 1.2.11 for WordPress allows remote authenticated users to execute arbitrary SQL commands via the asc_or_desc parameter in a create gallery request in the galleries_bwg page to wp-admin/admin.php.
Affected versions
max 1.2.11.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2015-1055

CVE, Research URL

CVE-2015-1055

Date
Jan 16, 2015
Research Description
SQL injection vulnerability in the Photo Gallery plugin 1.2.7 for WordPress allows remote attackers to execute arbitrary SQL commands via the order_by parameter in a GalleryBox action to wp-admin/admin-ajax.php.
Affected versions
max 1.2.8.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2022-4058

CVE, Research URL

CVE-2022-4058

Date
Dec 19, 2022
Research Description
The Photo Gallery by 10Web WordPress plugin before 1.8.3 does not validate and escape some parameters before outputting them back in in JS code later on in another page, which could lead to Stored XSS issue when an attacker makes a logged in admin open a malicious URL or page under their control.
Affected versions
max 1.8.3.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2022-1394

CVE, Research URL

CVE-2022-1394

Date
Jun 08, 2022
Research Description
The Photo Gallery by 10Web WordPress plugin before 1.6.4 does not properly validate and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks when unfiltered_html is disallowed
Affected versions
max 1.6.4.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2014-9312

CVE, Research URL

CVE-2014-9312

Date
Aug 28, 2017
Research Description
Unrestricted File Upload vulnerability in Photo Gallery 1.2.5.
Affected versions
max 1.2.6.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2021-46889

CVE, Research URL

CVE-2021-46889

Date
Jun 07, 2023
Research Description
The 10Web Photo Gallery plugin through 1.5.69 for WordPress allows XSS via theme_id for bwg_frontend_data. NOTE: other parameters are covered by CVE-2021-24291, CVE-2021-25041, and CVE-2021-31693.
Affected versions
max 1.5.69.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2021-31693

CVE, Research URL

CVE-2021-31693

Date
Nov 30, 2022
Research Description
The 10Web Photo Gallery plugin through 1.5.68 for WordPress allows XSS via album_gallery_id_0, bwg_album_search_0, and type_0 for bwg_frontend_data. NOTE: other parameters are covered by CVE-2021-24291, CVE-2021-25041, and CVE-2021-46889. NOTE: VMware information, previously connected to this CVE ID because of a typo, is at CVE-2022-31693.
Affected versions
max 1.5.69.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2023-6924

CVE, Research URL

CVE-2023-6924

Date
Jan 11, 2024
Research Description
The Photo Gallery by 10Web plugin for WordPress is vulnerable to Stored Cross-Site Scripting via widgets in versions up to, and including, 1.8.18 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with administrator-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. It can also be exploited with a contributor-level permission with a page builder plugin.
Affected versions
max 1.8.19.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-29832

CVE, Research URL

CVE-2024-29832

Date
Mar 26, 2024
Research Description
The current_url parameter of the AJAX call to the GalleryBox action of admin-ajax.php is vulnerable to reflected Cross Site Scripting. The value of the current_url parameter is embedded within an existing JavaScript within the response allowing arbitrary JavaScript to be inserted and executed. No authentication is required to exploit this issue. Note that other parameters within a AJAX call, such as image_id, must be valid for this vulnerability to be successfully exploited.
Affected versions
max 1.8.22.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-29833

CVE, Research URL

CVE-2024-29833

Date
Mar 26, 2024
Research Description
The image upload component allows SVG files and the regular expression used to remove script tags can be bypassed by using a Cross Site Scripting payload which does not match the regular expression; one example of this is the inclusion of whitespace within the script tag. An attacker must target an authenticated user with permissions to access this feature, however once uploaded the payload is also accessible to unauthenticated users.
Affected versions
max 1.8.22.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-0221

CVE, Research URL

CVE-2024-0221

Date
Feb 06, 2024
Research Description
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.8.19 via the rename_item function. This makes it possible for authenticated attackers to rename arbitrary files on the server. This can lead to site takeovers if the wp-config.php file of a site can be renamed. By default this can be exploited by administrators only. In the premium version of the plugin, administrators can give gallery management permissions to lower level users, which might make this exploitable by users as low as contributors.
Affected versions
max 1.8.20.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-29808

CVE, Research URL

CVE-2024-29808

Date
Mar 26, 2024
Research Description
The image_id parameter of the AJAX call to the editimage_bwg action of admin-ajax.php is vulnerable to reflected Cross Site Scripting. The value of the image_id parameter is embedded within an existing JavaScript within the response allowing arbitrary JavaScript to be inserted and executed. The attacker must target a an authenticated user with permissions to access this component to exploit this issue.
Affected versions
max 1.8.22.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-2296

CVE, Research URL

CVE-2024-2296

Date
Apr 06, 2024
Research Description
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG file uploads in all versions up to, and including, 1.8.21 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level access, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled. CVE-2024-29833 appears to be a duplicate of this issue.
Affected versions
max 1.8.22.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-33586

CVE, Research URL

CVE-2024-33586

Date
Apr 29, 2024
Research Description
Missing Authorization vulnerability in Photo Gallery Team Photo Gallery by 10Web.This issue affects Photo Gallery by 10Web: from n/a through 1.8.20.
Affected versions
max 1.8.21.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-29809

CVE, Research URL

CVE-2024-29809

Date
Mar 26, 2024
Research Description
The image_url parameter of the AJAX call to the editimage_bwg action of admin-ajax.php is vulnerable to reflected Cross Site Scripting. The value of the image_url parameter is embedded within an existing JavaScript within the response allowing arbitrary JavaScript to be inserted and executed. The attacker must target a an authenticated user with permissions to access this component to exploit this issue.
Affected versions
max 1.8.22.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-29810

CVE, Research URL

CVE-2024-29810

Date
Mar 26, 2024
Research Description
The thumb_url parameter of the AJAX call to the editimage_bwg action of admin-ajax.php is vulnerable to reflected Cross Site Scripting. The value of the thumb_url parameter is embedded within an existing JavaScript within the response allowing arbitrary JavaScript to be inserted and executed. The attacker must target a an authenticated user with permissions to access this component to exploit this issue.
Affected versions
max 1.8.22.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-32583

CVE, Research URL

CVE-2024-32583

Date
Apr 18, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Photo Gallery Team Photo Gallery by 10Web allows Reflected XSS.This issue affects Photo Gallery by 10Web: from n/a through 1.8.21.
Affected versions
max 1.8.22.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-35628

CVE, Research URL

CVE-2024-35628

Date
Jun 11, 2024
Research Description
Missing Authorization vulnerability in Photo Gallery Team Photo Gallery by 10Web.This issue affects Photo Gallery by 10Web: from n/a through 1.8.25.
Affected versions
max 1.8.26.
Status
vulnerable
Jun 08, 2024

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-5481

CVE, Research URL

CVE-2024-5481

Date
Jun 07, 2024
Research Description
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.8.23 via the esc_dir function. This makes it possible for authenticated attackers to cut and paste (copy) the contents of arbitrary files on the server, which can contain sensitive information, and to cut (delete) arbitrary directories, including the root WordPress directory. By default this can be exploited by administrators only. In the premium version of the plugin, administrators can give gallery edit permissions to lower level users, which might make this exploitable by users as low as contributors.
Affected versions
max 1.8.24.
Status
vulnerable

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-5426

CVE, Research URL

CVE-2024-5426

Date
Jun 07, 2024
Research Description
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘svg’ parameter in all versions up to, and including, 1.8.23 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. By default, this can only be exploited by administrators, but the ability to use and configure Photo Gallery can be extended to contributors on pro versions of the plugin.
Affected versions
max 1.8.24.
Status
vulnerable
Jun 10, 2024

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2023-33995

CVE, Research URL

CVE-2023-33995

Date
Dec 13, 2024
Research Description
Missing Authorization vulnerability in Photo Gallery Team Photo Gallery by 10Web allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Photo Gallery by 10Web: from n/a through 1.8.15.
Affected versions
max 1.8.16.
Status
vulnerable
Sep 27, 2024

Photo Gallery by 10Web – Mobile-Friendly Image Gallery # CVE-2024-44043

CVE, Research URL

CVE-2024-44043

Date
Oct 06, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10Web Photo Gallery by 10Web photo-gallery allows Stored XSS.This issue affects Photo Gallery by 10Web: from n/a through <= 1.8.27.
Affected versions
max 1.8.28.
Status
vulnerable
Oct 10, 2024

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2024-5968

CVE, Research URL

CVE-2024-5968

Date
Oct 09, 2024
Research Description
The Photo Gallery by 10Web WordPress plugin before 1.8.28 does not properly sanitise and escape some of its Gallery settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)
Affected versions
max 1.8.28.
Status
vulnerable
Nov 03, 2024

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2024-8670

CVE, Research URL

CVE-2024-8670

Date
May 16, 2025
Research Description
The Photo Gallery by 10Web WordPress plugin before 1.8.29 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).
Affected versions
max 1.8.29.
Status
vulnerable
Nov 05, 2024

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2024-9878

CVE, Research URL

CVE-2024-9878

Date
Nov 05, 2024
Research Description
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1.8.30 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.
Affected versions
max 1.8.31.
Status
vulnerable
Dec 03, 2024

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2024-10704

CVE, Research URL

CVE-2024-10704

Date
Nov 29, 2024
Research Description
The Photo Gallery by 10Web WordPress plugin before 1.8.31 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).
Affected versions
max 1.8.31.
Status
vulnerable
Mar 26, 2025

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2024-13124

CVE, Research URL

CVE-2024-13124

Date
Mar 24, 2025
Research Description
The Photo Gallery by 10Web WordPress plugin before 1.8.33 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).
Affected versions
max 1.8.33.
Status
vulnerable
Apr 13, 2025

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2025-2269

CVE, Research URL

CVE-2025-2269

Date
Apr 12, 2025
Research Description
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘image_id’ parameter in all versions up to, and including, 1.8.34 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick an administrative user into performing an action such as clicking on a link.
Affected versions
max 1.8.35.
Status
vulnerable
May 07, 2025

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2025-0613

CVE, Research URL

CVE-2025-0613

Date
Mar 31, 2025
Research Description
The Photo Gallery by 10Web WordPress plugin before 1.8.34 does not sanitised and escaped comment added on images by unauthenticated users, leading to an Unauthenticated Stored-XSS attack when comments are displayed
Affected versions
max 1.8.34.
Status
vulnerable
Mar 29, 2026

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2026-32330

CVE, Research URL

CVE-2026-32330

Date
Mar 14, 2026
Research Description
Cross-Site Request Forgery (CSRF) vulnerability in 10Web Photo Gallery by 10Web photo-gallery allows Cross Site Request Forgery.This issue affects Photo Gallery by 10Web: from n/a through <= 1.8.37.
Affected versions
max 1.8.38.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2026-27360

CVE, Research URL

CVE-2026-27360

Date
Feb 20, 2026
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10Web Photo Gallery by 10Web photo-gallery allows Stored XSS.This issue affects Photo Gallery by 10Web: from n/a through <= 1.8.38.
Affected versions
max 1.8.39.
Status
vulnerable
Apr 15, 2026

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2026-1036

CVE, Research URL

CVE-2026-1036

Date
Jan 22, 2026
Research Description
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the delete_comment() function in all versions up to, and including, 1.8.36. This makes it possible for unauthenticated attackers to delete arbitrary image comments. Note: comments functionality is only available in the Pro version of the plugin.
Affected versions
max 1.8.37.
Status
vulnerable
May 29, 2026

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2026-7048

CVE, Research URL

CVE-2026-7048

Date
May 28, 2026
Research Description
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'order_by' parameter in all versions up to, and including, 1.8.40 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with contributor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. This is exploitable by embedding a malicious shortcode in a post or draft, allowing the injected SQL to execute when the shortcode is rendered.
Affected versions
max 1.8.41.
Status
vulnerable
Jun 06, 2026

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2026-49771

CVE, Research URL

CVE-2026-49771

Date
Jun 04, 2026
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in 10Web Photo Gallery by 10Web allows Blind SQL Injection. This issue affects Photo Gallery by 10Web: from n/a through 1.8.41.
Affected versions
max 1.8.42.
Status
vulnerable
Jun 07, 2026

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2026-9829

CVE, Research URL

CVE-2026-9829

Date
Jun 06, 2026
Research Description
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to time-based SQL Injection via 'compact_album_order_by' Shortcode Parameter in all versions up to, and including, 1.8.41 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with contributor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. The malicious payload is stored via the 'shortcode_bwg' AJAX handler — accessible to Contributor-level users and exploitable without a valid nonce by omitting the 'page' parameter — and is subsequently triggered by the unauthenticated 'bwg_frontend_data' AJAX handler, meaning successful exploitation requires only that an attacker has Contributor-level access to save the shortcode.
Affected versions
max 1.8.42.
Status
vulnerable
Jun 16, 2026

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 9989e2c92fcafea7d5ab228466caef3615c3b015

Date
Feb 18, 2021
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.5.69 WordPress Photo Gallery by 10Web plugin <= 1.5.68 - Cross-Site Scripting (XSS) vulnerability Cross-Site Scripting (XSS) vulnerability found in WordPress Photo Gallery by 10Web plugin (versions <= 1.5.68).
Affected versions
max 1.5.69.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 549d791aac05ea25e72d659748c73b53e1e5ac25

Date
May 19, 2021
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.5.74 WordPress Photo Gallery by 10Web plugin <= 1.5.73 - Multiple Reflected Cross-Site Scripting (XSS) vulnerabilities Multiple Reflected Cross-Site Scripting (XSS) vulnerabilities discovered by m0ze and Thura Moe Myint in WordPress Photo Gallery by 10Web plugin (versions <= 1.5.73).
Affected versions
max 1.5.74.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # e102e0e793e772db1ebfc0f6064ca6aa468c8fc6

Date
May 05, 2017
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.3.30 WordPress Web-Dorado Gallery plugin 1.3.29 - SQL Injection vulnerability SQL injection vulnerability found in WordPress Web-Dorado Gallery plugin version 1.3.29 by DefenceCode Update plugin to the latest possible version.
Affected versions
max 1.3.30.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 666095e115f2dfd15d49f98a1b1130fd57e85620

Date
May 07, 2014
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.2.42 WordPress Photo Gallery Plugin <= 1.2.41 - Cross Site Request Forgery This plugin is prone to a cross site request forgery vulnerability. Update the plugin.
Affected versions
max 1.2.42.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 3a03df29a5d17721a3d956e33bb4c5e6355be30a

Date
Jul 26, 2019
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.5.31 WordPress Photo Gallery by 10Web plugin <= 1.5.30 - SQL Injection (SQLi) vulnerability SQL Injection (SQLi) vulnerability found by Tin Duong in WordPress Photo Gallery by 10Web plugin (versions <= 1.5.30).
Affected versions
max 1.5.31.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 09e7cfe9783e1fb95232606985ddc3a54217ed6b

Date
May 15, 2020
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.5.55 WordPress Photo Gallery by 10Web plugin <= 1.5.54 - Unauthenticated SQL Injection (SQLi) vulnerability Unauthenticated SQL Injection (SQLi) vulnerability found by Nguyen Anh Tien in WordPress Photo Gallery by 10Web plugin (versions <= 1.5.54).
Affected versions
max 1.5.55.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 6f3a85f6334d5ad6ee6706e16a7bcf7eb5c4e3b6

Date
Nov 26, 2022
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.8.8 Photo Gallery by 10Web – Mobile-Friendly Image Gallery <= 1.8.7 - Open Redirect The Photo Gallery by 10Web plugin for WordPress is vulnerable to open redirect in versions up to 1.8.7. This is due to insufficient validation of the curr_url ($current_url) request parameter when a user accesses a link with an invalid share link. This would make it possible for an attacker to redirect a victim to a potentially malicious site, granted they could trick the victim into performing an action such as clicking on a link. The patches in 1.8.1, 1.8.3, 1.8.7 are incomplete and can be bypassed.
Affected versions
max 1.8.8.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 930e6819ce20b60faeacada90063cd0899fdb3a9

Date
Feb 04, 2021
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.5.68 WordPress Photo Gallery by 10Web plugin <= 1.5.67 - Cross-Site Scripting (XSS) vulnerability Cross-Site Scripting (XSS) vulnerability found in WordPress Photo Gallery by 10Web plugin (versions <= 1.5.67).
Affected versions
max 1.5.68.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # a6c11c6d5828efac9115aa35fa880c2267850be8

Date
Nov 03, 2022
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.8.1 Photo Gallery by 10Web <= 1.8.0 - Reflected Cross-Site Scripting The Photo Gallery by 10Web plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘curr_url’ parameter in versions up to, and including, 1.8.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.
Affected versions
max 1.8.1.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 648da73422456461b6bee7a0be3480aedcb5213e

Date
Aug 10, 2022
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.7.1 Photo Gallery <= 1.7.0 - Reflected Cross-Site Scripting The Photo Gallery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via an unknown parameter in versions up to, and including, 1.7.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.
Affected versions
max 1.7.1.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 105796217fa80d124578a4e7c98826a38195080f

Date
Jun 28, 2022
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.6.8 Photo Gallery by 10Web <= 1.6.7 - Authenticated (Admin+) Stored Cross-Site Scripting The Photo Gallery by 10Web plugin for WordPress is vulnerable to Cross-Site Scripting via several parameters in versions up to, and including, 1.6.7 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrative privileges, to inject arbitrary web scripts in pages that execute whenever a victim accesses the injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.
Affected versions
max 1.6.8.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 022273cb0ce0855eef3434aa954e4e84bde5fbed

Date
Aug 10, 2022
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.7.1 WordPress Photo Gallery plugin <= 1.7.0 - Reflected Cross-Site Scripting (XSS) vulnerability Reflected Cross-Site Scripting (XSS) vulnerability discovered by WPScan in WordPress Photo Gallery plugin (versions <= 1.7.0). Update the WordPress Photo Gallery by 10Web plugin to the latest available version (at least 1.7.1).
Affected versions
max 1.7.1.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # b17967aeb69e59ebfb21b1b934cf0cf85a415516

Date
Feb 26, 2018
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.3.67 WordPress Photo Gallery by WD plugin <=1.3.66 - Cross-Site Scripting (XSS) vulnerability Cross-Site Scripting (XSS) vulnerability found in WordPress Photo Gallery by WD plugin (versions <=1.3.66).
Affected versions
max 1.3.67.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 6c67406a22fb748cc0e7116a2887e48aefa85f5d

Date
Jul 01, 2022
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.6.9 Photo Gallery by 10Web <= 1.6.8 - Authenticated (Admin+) Cross-Site Scripting The Photo Gallery by 10Web plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via several parameters in versions up to, and including, 1.6.8 due to insufficient input sanitization and output escaping. This makes it possible for attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link. This only affects multi-site installations and installations where unfiltered_html has been disabled.
Affected versions
max 1.6.9.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 7049a918ab298cf1293d25920ae2dea7ada272d3

Date
Sep 09, 2019
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.5.35 WordPress Photo Gallery by 10Web plugin <= 1.5.34 - Cross-Site Scripting (XSS) vulnerability Cross-Site Scripting (XSS) vulnerability found in WordPress Photo Gallery by 10Web plugin (versions <= 1.5.34).
Affected versions
max 1.5.35.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 258d67144bff6c2b4f17c3571632209c8318355c

Date
Jun 16, 2022
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.6.7 Photo Gallery by 10Web <= 1.6.6 - Reflected Cross-Site Scripting The Photo Gallery by 10Web plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in versions up to, and including, 1.6.6 . This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.
Affected versions
max 1.6.7.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # f22cb4c48cf228ed2a816482a96a11aebaa5a783

Date
May 02, 2017
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.3.38 Photo Gallery by 10Web <= 1.3.37 - Authenticated SQL Injection The Photo Gallery by 10Web plugin for WordPress is vulnerable to SQL Injection via the ‘album_id’ parameter in versions up to, and including, 1.3.37 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.
Affected versions
max 1.3.38.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # e044228379148cc090c0dcb3f53c4be347b152b2

Date
Mar 21, 2023
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.8.15 Photo Gallery by 10Web <= 1.8.14 - Authenticated (Administrator+) Directory Traversal The Photo Gallery plugin by 10Web for WordPress is vulnerable to Directory Traversal in versions up to, and including, 1.8.14 via the dir parameter. This allows authenticated attackers with administrator-level permissions to upload files to arbitrary directories on the server.
Affected versions
max 1.8.15.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 6e5f0e04-36c0-4fb6-8194-fe32c15cb3b5

Date
-
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.5.69 Photo Gallery by 10web &lt; 1.5.69 - Reflected Cross-Site Scripting (XSS) The plugin did not properly sanitise the bwg_search_X GET parameter, available in a frontend gallery when the Show Search Box setting is enabled (disabled by default), leading to a reflected Cross-Site Scripting issue
Affected versions
max 1.5.69.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 49b33214c906caa01e4ed854dc3930663cb7b0a6

Date
Dec 14, 2017
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.3.67 Photo Gallery by 10Web <= 1.3.66 - Cross-Site Scripting The Photo Gallery by 10Web plugin for WordPress is vulnerable to Cross-Site Scripting in versions up to, and including, 1.3.66 due to insufficient input sanitization and output escaping. This makes it possible for attackers to inject arbitrary web scripts that execute in a victim's browser.
Affected versions
max 1.3.67.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # e9f9bfb0-7cb8-4f92-b436-f08442a6c60a

Date
-
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.7.1 Photo Gallery &lt; 1.7.1 - Reflected Cross-Site Scripting The plugin does not escape some URLs before outputting them back in attributes, leading to Reflected Cross-Site Scripting
Affected versions
max 1.7.1.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 022d3a98f0ab2ad2277ddde49eff3c1e796ed56c

Date
Feb 23, 2021
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.5.69 Photo Gallery by 10Web <= 1.5.68 - Cross-Site Scripting The Photo Gallery by 10Web plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘ bwg_search_X’ parameter in versions up to, and including, 1.5.68 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link. This vulnerability is separate from CVE-2021-24291.
Affected versions
max 1.5.69.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 177aa555f640a47e85772eb32823bada26eb973b

Date
Jun 16, 2017
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.3.43 Photo Gallery by 10Web < 1.3.43 - Authenticated Path Traversal The Photo Gallery by 10Web plugin for WordPress is vulnerable to Path Traversal in versions up to, and including, 1.3.42. This allows administrative-level attackers to read the contents of arbitrary files on the server, which can contain sensitive information.
Affected versions
max 1.3.43.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 2a87688136bb000da29d4fe2e0cec51e829c3766

Date
Jun 02, 2023
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.8.16 Photo Gallery <= 1.8.15 - Missing Authorization The Photo Gallery plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the check_score function called via an AJAX action in versions up to, and including, 1.8.15. This makes it possible for authenticated attackers, with minimal permissions such as a subscriber, to check page speed score.
Affected versions
max 1.8.16.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # a20a2ece-6c82-41c6-a21e-95e720f45584

Date
-
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.5.79 Photo Gallery &lt; 1.5.79 - Stored XSS via Uploaded SVG in Zip The plugin did not ensure that uploaded SVG files inside a Zipped archive added to a gallery do not contain malicious content. As a result, users allowed to add images to gallery can upload an SVG file containing JavaScript code, which will be executed when accessing the image directly (ie in the /wp-content/uploads/photo-gallery/ folder), leading to a Cross-Site Scripting (XSS) issue
Affected versions
max 1.5.79.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # faac0458cd9a2cbf17c4d4476ecea79a7e18905a

Date
Jul 19, 2021
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.5.79 Photo Gallery by 10Web <= 1.5.78 - Stored Cross-Site Scripting via Uploaded SVG The Photo Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.5.78 due to insufficient sanitization and escaping on SVG uploads. This makes it possible for low-level authenticated attackers, such as authors, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
Affected versions
max 1.5.79.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 77790dc5-1cd1-461a-b14a-20c67b3ffb5f

Date
-
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.3.43 Photo Gallery by WD &lt;= 1.3.42 - Authenticated Path Traversal The Photo Gallery by 10Web &ndash; Mobile-Friendly Image Gallery WordPress plugin was affected by an Authenticated Path Traversal security vulnerability.
Affected versions
max 1.3.43.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # 7ee790bd-84fb-4625-a308-da5d50677589

Date
-
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.3.36 Photo Gallery by WD &lt;= 1.3.35 - Authenticated SQL Injection http://www.defensecode.com/advisories/DC-2017-02-011_WordPress_WebDorado_Gallery_Plugin_Advisory.pdf
Affected versions
max 1.3.36.
Status
vulnerable

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # a320f45c-e25b-48d4-8f86-febf7b789b3b

Date
-
Research Description
Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery [photo-gallery] < 1.3.67 Photo Gallery by WD &lt;= 1.3.66 - Cross-Site Scripting (XSS) User input gets first escaped with esc_html() and then urldecoded. This leads to the possibility of reflected XSS with a double url encoded payload.
Affected versions
max 1.3.67.
Status
vulnerable
Sep 04, 2026

Photo Gallery by 10Web &#8211; Mobile-Friendly Image Gallery # CVE-2026-12865

CVE, Research URL

CVE-2026-12865

Date
Sep 02, 2026
Research Description
The Photo Gallery by 10Web WordPress plugin before 1.8.44 does not escape two request parameters before reflecting them into input-attribute values on its admin pages (one on the Shortcode page, one on the Galleries/Albums list page), so an unauthenticated attacker can craft a link that, when opened by a logged-in administrator (or, for the first sink, a contributor), executes arbitrary JavaScript in the victim's authenticated session via an auto-firing onfocus handler. The Galleries/Albums sink renders only when the site has more than 20 galleries/albums (the normal state of a populated install).
Affected versions
max 1.8.44.
Status
vulnerable