enviragallery
Web & CMS Pluginsoss-project
Top products
Latest CVEs
The 8 most recently published vulnerabilities affecting enviragallery.
- CVE-2024-43925WordPress Envira Gallery Lite plugin <= 1.8.14 - Broken Access Control vulnerability4.3
- CVE-2024-3899Envira Gallery < 1.8.15 - Author+ Stored XSS4.8
- CVE-2023-6742Envira Gallery Lite <= 1.8.7.2 - Missing Authorization to Gallery Modification via envira_gallery_insert_images4.3
- CVE-2022-2190Envira Gallery Lite < 1.8.4.7 - Reflected Cross-Site Scripting6.1
- CVE-2021-24126Envira Gallery Lite < 1.8.3.3 - Authenticated Stored Cross-Site Scripting5.4
- CVE-2020-35582A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/post.php request with the post_...5.4
- CVE-2020-35581A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/admin-ajax.php request with the...5.4
- CVE-2020-9334A stored XSS vulnerability exists in the Envira Photo Gallery plugin through 1.7.6 for WordPress. Successful exploitation of this vulnerability would allow a authenticated low-privileged user to in...5.4