Extension WordPress
Vulnérabilités Gallery – Photo Albums Plugin
Cette page rassemble les failles publiées pour Gallery – Photo Albums Plugin, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Gallery – Photo Albums Plugin
4 fiches
Gallery – Photo Albums Plugin <= 1.3.170 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Gallery – Photo Albums Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.3.170 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with…
*-1.3.170
Non indiqué
31/03/2025
Gallery – Photo Albums Plugin < 1.3.47 – Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in includes/metaboxes.php in the Gallery – Photo Albums – Portfolio plugin 1.3.47 for WordPress allow remote authenticated users to inject arbitrary web script or HTML via the (1) Media Title or (2) Media…
[*, 1.3.50)
1.3.50
05/09/2015
Gallery – Photo Albums Plugin < 1.3.03 – Multiple Cross-Site Request Forgery
The Gallery – Photo Albums Plugin for WordPress is vulnerable to Multiple Cross-Site Request Forgery in versions before 1.3.03. This is due to missing or incorrect nonce validation on the easymedia_imgresize_ajax() AJAX function. This makes it possible for…
[*, 1.3.03)
1.3.03
01/09/2014
Gallery – Photo Albums Plugin < 1.2.29 – Cross-Site Scripting
The Gallery – Photo Albums (formerly titled Easy Media Gallery) Plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the spg_add_admin function in versions up to, and including, 1.2.28 due to insufficient input sanitization and output escaping.…
[*, 1.2.29)
1.2.29
17/12/2013
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.