Extension WordPress
Vulnérabilités Photo Gallery by FooGallery : Responsive Image Gallery, Masonry Gallery & Carousel, page 2
Cette page rassemble les failles publiées pour Photo Gallery by FooGallery : Responsive Image Gallery, Masonry Gallery & Carousel, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Photo Gallery by FooGallery : Responsive Image Gallery, Masonry Gallery & Carousel
24 fiches
FooGallery <= 2.0.34 – Stored Cross-Site Scripting
In the Best Image Gallery & Responsive Photo Gallery – FooGallery WordPress plugin before 2.0.35, the Custom CSS field of each gallery is not properly sanitised or validated before being being output in the page where the gallery…
[*, 2.0.35)
2.0.35
31/05/2021
FooGallery <= 1.8.12 – Cross-Site Scripting
The FooGallery plugin 1.8.12 for WordPress allow XSS via the post_title parameter. Please note this requires administrative privileges to exploit.
*-1.8.12
1.8.18
01/06/2020
FooGallery <= 1.9.24 – Authenticated Cross-Site Scripting
The FooGallery plugin for WordPress is vulnerable to Cross-Site Scripting via the image title and caption parameters in the gallery media upload editor in versions up to, and including, 1.9.24 due to insufficient input sanitization and output escaping.…
[*, 1.9.25)
1.9.25
04/05/2020
Freemius SDK <= 2.2.3 – Missing Authorization to Arbitrary Options Update
The Freemius SDK for WordPress is vulnerable to authorization bypass due to a missing capability check on the _get_db_option and _set_db_option functions in versions up to, and including, 2.2.3. This makes it possible for authenticated attackers, with subscriber-level…
[*, 1.6.17)
1.6.17
25/02/2019
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.