cleantalk
Vulnerabilities and Security Researches

Photo Gallery by 10Web – Mobile-Friendly Image Gallery, CVE-2021-46889

CVE, Research URL

CVE-2021-46889

Published on
Jun 07, 2023
Research Description
The 10Web Photo Gallery plugin through 1.5.69 for WordPress allows XSS via theme_id for bwg_frontend_data. NOTE: other parameters are covered by CVE-2021-24291, CVE-2021-25041, and CVE-2021-31693.
Affected versions
Min -, max 1.5.69.
Status
vulnerable