cleantalk
Vulnerabilities and Security Researches

Security reports fornextgen-gallery nextgen-gallery

CVE/PSC Application Date Affected versions Description
Actual on: Jun 01, 2026, 17:06:01
Entries count: 39

CVE-2025-53224

NextGEN Gallery Search

vulnerable

Aug 30, 2025, 07:08:22
Min -
Max 2.12
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Koen Schuit NextGEN Gallery Search allows Reflected XSS. This issue affects NextGEN Gallery Search: from n/a through 2.12.

4624f982-a331-414c-88c3-12761807ec95

Geo2 Maps Add-on for NextGEN Gallery

vulnerable

Jun 07, 2024, 04:06:20
Min -
Max 2.0.3
Geo2 Maps Add-on for NextGEN Gallery [nextgen-gallery-geo] < 2.0.3 (closed) Geo2 Maps Add-on for NextGEN Gallery &lt; 2.0.3 - Unauthenticated PHP Object Injection The plugin nextgen-gallery-geo insecurely trusts serialised data submitted over the AJAX ngg_geo_showmap (v &lt;= 1.0.0) or geo2_maps_showmap (v &lt;= 2.0.2) actions, available to both unauthenticated and authenticated users. This opens up the site to a PHP object injection vulnerability potential exploit vector.

CVE-2025-28869

NextGEN Gallery Voting

vulnerable

Mar 26, 2025, 18:03:55
Min -
Max 2.7.6
NextGEN Gallery Voting [nextgen-gallery-voting] <= 2.7.6 (unfixed + closed) CVE-2025-28869

488bd710de9089b64a6d30cba806517c0fb9fdf5

NextGEN Gallery Voting

vulnerable

Jun 07, 2024, 06:06:46
Min -
Max 2.7.6
NextGEN Gallery Voting [nextgen-gallery-voting] < 2.7.6 NextGEN Gallery Voting <= 2.7.5 - Authenticated (Admin+) SQL Injection The NextGEN Gallery Voting plugin for WordPress is vulnerable to SQL Injection via the 'nggv[limit]' parameter in versions up to, and including, [up to affected version] due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers with administrative privileges to app...

CVE-2024-5020

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Dec 06, 2024, 08:12:13
Min -
Max 3.59.5
Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled FancyBox JavaScript library (versions 1.3.4 to 3.5.7) in various versions due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVE-2025-2537

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

May 08, 2026, 00:05:36
Min -
Max 3.59.12
Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled ThickBox JavaScript library (version 3.1) in various versions due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVE-2024-10545

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Feb 27, 2025, 00:02:15
Min -
Max 3.59.9
The Photo Gallery, Sliders, Proofing and WordPress plugin before 3.59.9 does not sanitise and escape some of its Image settings, which could allow high privilege users such as Admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

CVE-2024-5442

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jul 14, 2024, 22:07:07
Min -
Max 3.59.3
The Photo Gallery, Sliders, Proofing and WordPress plugin before 3.59.3 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

CVE-2026-6566

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

May 21, 2026, 18:05:12
Min -
Max 4.2.1
The Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to and including 4.2.0. This is due to insufficient object-level authorization in the image deletion REST flow where the permission callback for DELETE /imagely/v1/images/{id} only checks 'NextGEN Manage gallery' permissions and does not enforce gallery ownership or 'NextGEN Manage others gallery' permissions. This makes it possible for authenticated attacke...

CVE-2024-5878

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

May 21, 2025, 04:05:14
Min -
Max 3.59.5
Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled SimpleLightbox JavaScript library (version 2.1.5) in various versions due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVE-2026-1463

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Apr 13, 2026, 23:04:49
Min -
Max 4.0.5
The Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 4.0.3 via the 'template' parameter in gallery shortcodes. This makes it possible for authenticated attackers, with Author-level access and above, to include and execute arbitrary .php files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execut...

CVE-2015-9537

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 2.1.10
The NextGEN Gallery plugin before 2.1.10 for WordPress has multiple XSS issues involving thumbnail_width, thumbnail_height, thumbwidth, thumbheight, wmXpos, and wmYpos, and template.

CVE-2010-1186

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 1.5.2
Cross-site scripting (XSS) vulnerability in xml/media-rss.php in the NextGEN Gallery plugin before 1.5.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the mode parameter.

CVE-2008-7175

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 2.0.1
Cross-site scripting (XSS) vulnerability in wp-admin/admin.php in NextGEN Gallery 0.96 and earlier plugin for Wordpress allows remote attackers to inject arbitrary web script or HTML via the picture description field in a page edit action.

CVE-2019-14314

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 3.2.11
A SQL injection vulnerability exists in the Imagely NextGEN Gallery plugin before 3.2.11 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system via modules/nextgen_gallery_display/package.module.nextgen_gallery_display.php.

CVE-2013-0291

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min 1.9.10
Max 1.9.11
NextGEN Gallery Plugin for WordPress 1.9.10 and 1.9.11 has a Path Disclosure Vulnerability

CVE-2020-35942

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 3.5.0
A Cross-Site Request Forgery (CSRF) issue in the NextGEN Gallery plugin before 3.5.0 for WordPress allows File Upload and Local File Inclusion via settings modification, leading to Remote Code Execution and XSS. (It is possible to bypass CSRF protection by simply not including a nonce parameter.)

CVE-2018-7586

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 2.2.50
In the nextgen-gallery plugin before 2.2.50 for WordPress, gallery paths are not secured.

CVE-2015-9229

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 2.1.23
In the nggallery-manage-gallery page in the Photocrati NextGEN Gallery plugin 2.1.15 for WordPress, XSS is possible for remote authenticated administrators via the images[1][alttext] parameter.

CVE-2013-3684

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 1.9.13
NextGEN Gallery plugin before 1.9.13 for WordPress: ngggallery.php file upload

CVE-2015-9538

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 2.1.15
The NextGEN Gallery plugin before 2.1.15 for WordPress allows ../ Directory Traversal in path selection.

CVE-2018-1000172

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 2.2.45
Imagely NextGEN Gallery version 2.2.30 and earlier contains a Cross Site Scripting (XSS) vulnerability in Image Alt & Title Text. This attack appears to be exploitable via a victim viewing the image in the administrator page. This vulnerability appears to have been fixed in 2.2.45.

CVE-2016-10889

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 2.1.57
The nextgen-gallery plugin before 2.1.57 for WordPress has SQL injection via a gallery name.

CVE-2016-6565

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 2.1.57
The Imagely NextGen Gallery plugin for Wordpress prior to version 2.1.57 does not properly validate user input in the cssfile parameter of a HTTP POST request, which may allow an authenticated user to read arbitrary files from the server, or execute arbitrary code on the server in some circumstances (dependent on server configuration).

CVE-2020-35943

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 3.5.0
A Cross-Site Request Forgery (CSRF) issue in the NextGEN Gallery plugin before 3.5.0 for WordPress allows File Upload. (It is possible to bypass CSRF protection by simply not including a nonce parameter.)

CVE-2015-9228

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 2.1.15
In post-new.php in the Photocrati NextGEN Gallery plugin 2.1.10 for WordPress, unrestricted file upload is available via the name parameter, if a file extension is changed from .jpg to .php.

CVE-2024-39627

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jul 26, 2024, 09:07:49
Min -
Max 3.59.4
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Imagely NextGEN Gallery allows Stored XSS.This issue affects NextGEN Gallery: from n/a through 3.59.3.

CVE-2015-1784

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 2.0.77.3
In nextgen-galery wordpress plugin before 2.0.77.3 there are two vulnerabilities which can allow an attacker to gain full access over the web application. The vulnerabilities lie in how the application validates user uploaded files and lack of security measures preventing unwanted HTTP requests.

CVE-2015-1785

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 2.0.7
In nextgen-galery wordpress plugin before 2.0.77.3 there are two vulnerabilities which can allow an attacker to gain full access over the web application. The vulnerabilities lie in how the application validates user uploaded files and lack of security measures preventing unwanted HTTP requests.

CVE-2012-3414

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 1.9.7
Cross-site scripting (XSS) vulnerability in swfupload.swf in SWFUpload 2.2.0.1 and earlier, as used in WordPress before 3.3.2, TinyMCE Image Manager 1.1, and other products, allows remote attackers to inject arbitrary web script or HTML via the movieName parameter, related to the "ExternalInterface.call" function.

CVE-2022-38468

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 2.0.66
Cross-Site Request Forgery (CSRF) vulnerability in Imagely WordPress Gallery Plugin – NextGEN Gallery plugin <= 3.28 leading to thumbnail alteration.

CVE-2023-3154

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 3.39
The WordPress Gallery Plugin WordPress plugin before 3.39 is vulnerable to PHAR Deserialization due to a lack of input parameter validation in the `gallery_edit` function, allowing an attacker to access arbitrary resources on the server.

CVE-2023-3279

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 3.39
The WordPress Gallery Plugin WordPress plugin before 3.39 does not validate some block attributes before using them to generate paths passed to include function/s, allowing Admin users to perform LFI attacks

CVE-2023-48328

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 3.39
Cross-Site Request Forgery (CSRF) vulnerability in Imagely WordPress Gallery Plugin – NextGEN Gallery allows Cross Site Request Forgery.This issue affects WordPress Gallery Plugin – NextGEN Gallery: from n/a through 3.37.

CVE-2024-3097

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 3.59.1
The WordPress Gallery Plugin – NextGEN Gallery plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the get_item function in versions up to, and including, 3.59. This makes it possible for unauthenticated attackers to extract sensitive data including EXIF and other metadata of any image uploaded through the plugin.

CVE-2024-2744

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 3.59.1
The NextGEN Gallery WordPress plugin before 3.59.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

CVE-2023-3155

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jun 07, 2024, 00:06:01
Min -
Max 3.39
The WordPress Gallery Plugin WordPress plugin before 3.39 is vulnerable to Arbitrary File Read and Delete due to a lack of input parameter validation in the `gallery_edit` function, allowing an attacker to access arbitrary resources on the server.

CVE-2024-6393

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Nov 16, 2024, 18:11:28
Min -
Max 3.59.5
The Photo Gallery, Sliders, Proofing and WordPress plugin before 3.59.5 does not sanitise and escape some of its Images settings, which could allow high privilege users such as Admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

CVE-2025-13641

WordPress Gallery Plugin &#8211; NextGEN Gallery

vulnerable

Jan 28, 2026, 04:01:11
Min -
Max 4.0.0
The Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.59.12 via the 'template' shortcode parameter. This is due to insufficient path validation that allows absolute paths to be provided. This makes it possible for authenticated attackers, with Contributor-level access and above, to include and execute arbitrary PHP files on the server, bypassing web server restrictions like .htaccess. Successful ex...