cleantalk
Vulnerabilities and Security Researches

Customizable WordPress Gallery Plugin – Modula Image Gallery, CVE-2020-9003

CVE, Research URL

CVE-2020-9003

Published on
Feb 21, 2020
Research Description
A stored XSS vulnerability exists in the Modula Image Gallery plugin before 2.2.5 for WordPress. Successful exploitation of this vulnerability would allow an authenticated low-privileged user to inject arbitrary JavaScript code that is viewed by other users.
Affected versions
Min -, max 2.2.5.
Status
vulnerable