| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-2471 | FooGallery <= 2.4.14 - Authenticated (Author+) Stored Cross-Site Scripting via Image Attachment Fields | fooplugins | Gallery by FooGallery | Medium | 6.4 | 2024-04-06 05:37:15 | Deep Dive |
| CVE-2024-0825 | Vimeography: Vimeo Video Gallery WordPress Plugin <= 2.3.2 - Authenticated (Contributor+) PHP Object Injection | videogallery | Vimeography: Vimeo Video Gallery WordPress Plugin | High | 8.8 | 2024-03-05 01:56:02 | Deep Dive |
| CVE-2024-0604 | Best WordPress Gallery Plugin – FooGallery <= 2.4.7 -Authenticated(Administrator+) Stored Cross-Site Scripting via settings | fooplugins | Gallery by FooGallery | Medium | 4.4 | 2024-02-20 18:56:47 | Deep Dive |
| CVE-2024-24887 | WordPress Contest Gallery Plugin <= 21.2.8.4 is vulnerable to Cross Site Request Forgery (CSRF) | Contest Gallery | Photos and Files Contest Gallery – Contact Form, Upload Form, Social Share and Voting Plugin for WordPress | Medium | 5.4 | 2024-02-12 08:43:27 | Deep Dive |
| CVE-2023-6742 | Envira Gallery Lite <= 1.8.7.2 - Missing Authorization to Gallery Modification via envira_gallery_insert_images | smub | Envira Gallery – Image Photo Gallery, Albums, Video Gallery, Slideshows & More | Medium | 4.3 | 2024-01-11 08:32:33 | Deep Dive |
| CVE-2023-6747 | FooGallery Premium <= 2.3.3 - Authenticated (Contributor+) Stored Cross-Site Scripting | https://fooplugins.com | FooGallery Premium | Medium | 6.4 | 2024-01-03 08:29:49 | Deep Dive |
| CVE-2023-48328 | WordPress NextGEN Gallery Plugin <= 3.37 is vulnerable to Cross Site Request Forgery (CSRF) | Imagely | WordPress Gallery Plugin – NextGEN Gallery | Medium | 4.3 | 2023-11-30 16:05:37 | Deep Dive |
| CVE-2023-45069 | WordPress Video Gallery – YouTube Gallery Plugin <= 2.1.3 is vulnerable to SQL Injection | Video Gallery by Total-Soft | Video Gallery – Best WordPress YouTube Gallery Plugin | 超危 | - | 2023-11-06 08:42:03 | Deep Dive |
| CVE-2023-3279 | NextGEN Gallery < 3.39 - Admin+ Local File Inclusion | Unknown | WordPress Gallery Plugin | 中危 | - | 2023-10-16 19:39:18 | Deep Dive |
| CVE-2023-3155 | NextGEN Gallery < 3.39 - Admin+ Arbitrary File Read and Delete | Unknown | WordPress Gallery Plugin | 高危 | - | 2023-10-16 19:39:08 | Deep Dive |
| CVE-2023-3154 | NextGEN Gallery < 3.39 - Admin+ PHAR Deserialization | Unknown | WordPress Gallery Plugin | 高危 | - | 2023-10-16 19:39:06 | Deep Dive |
| CVE-2023-44233 | WordPress FooGallery Plugin <= 2.2.44 is vulnerable to Cross Site Request Forgery (CSRF) | FooPlugins | Best WordPress Gallery Plugin – FooGallery | Medium | 5.4 | 2023-10-06 15:04:47 | Deep Dive |
| CVE-2023-23705 | WordPress Books Gallery Plugin <= 4.4.8 is vulnerable to Cross Site Request Forgery (CSRF) | HM Plugin | WordPress Books Gallery | Medium | 4.3 | 2023-05-23 13:03:10 | Deep Dive |
| CVE-2023-28666 | WordPress plugin InPost Gallery 跨站脚本漏洞 | - | InPost Gallery WordPress Plugin | 中危 | - | 2023-03-22 00:00:00 | Deep Dive |
| CVE-2023-0175 | Smart Logo Showcase Lite <= 1.1.9 - Contributor+ Stored XSS | Unknown | Responsive Clients Logo Gallery Plugin for WordPress | 中危 | - | 2023-03-20 15:52:09 | Deep Dive |
| CVE-2022-38468 | WordPress NextGEN Gallery Plugin <= 3.28 is vulnerable to Cross Site Request Forgery (CSRF) | Imagely | WordPress Gallery Plugin – NextGEN Gallery | Medium | 4.3 | 2023-03-01 13:02:02 | Deep Dive |
| CVE-2022-4142 | WordPress Filter Gallery Plugin < 0.1.6 - Admin+ Stored XSS | Unknown | WordPress Filter Gallery Plugin | 中危 | - | 2023-01-02 21:49:18 | Deep Dive |
| CVE-2022-41135 | WordPress Modula plugin <= 2.6.9 - Unauth. Plugin Settings Change vulnerability | WPChill | Modula Image Gallery (WordPress plugin) | Medium | 6.5 | 2022-11-18 22:25:54 | Deep Dive |
| CVE-2022-45066 | WordPress WooSwipe WooCommerce Gallery plugin <= 2.0.1 - Auth. Broken Access Control vulnerability | Thrive Website Design | WooSwipe WooCommerce Gallery (WordPress plugin) | Medium | 5.4 | 2022-11-17 22:05:04 | Deep Dive |
| CVE-2022-2190 | Envira Gallery Lite < 1.8.4.7 - Reflected Cross-Site Scripting | Unknown | Gallery Plugin for WordPress – Envira Photo Gallery | 中危 | - | 2022-10-31 00:00:00 | Deep Dive |