All-in-One Video Gallery

All-in-One Video Gallery is a plugin that allows users to add videos as posts and create scalable, searchable, and SEO-optimized video galleries in minutes. The plugin features a custom HTML5 video player that supports various video formats and embeddable players like YouTube, Vimeo, and Facebook. It also includes player controls, playback options, subtitles, and GDPR consent. Users can create unlimited categories and tags, group videos, and mark them as featured. The plugin offers over 100 customizable settings and is suitable for all kinds of websites.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in All-in-One Video Gallery 3.7.1

    Fixed

    The All-in-One Video Gallery plugin for WordPress has a security issue that allows attackers to insert harmful scripts into pages through the plugin's Video feature. This can happen when an authorize...

    Read More
  • Input validation vulnerability in All-in-One Video Gallery 3.6.5

    Fixed

    The All-in-One Video Gallery plugin for WordPress has a security issue that affects all versions up to 3.6.5. This can allow attackers with contributor-level access or higher to include and run their...

    Read More
  • Input validation vulnerability in All-in-One Video Gallery 3.6.4

    Fixed

    The WordPress plugin called All-in-One Video Gallery has a security issue that allows attackers to upload any type of file to a website. This problem affects all versions up to 3.6.4 and can be explo...

    Read More
  • Access violation vulnerability in All-in-One Video Gallery 3.5.2

    Fixed

    The plugin called All-in-One Video Gallery for WordPress has a security issue that allows unauthorized access. This means that people who are logged in and have contributor-level access or higher can...

    Read More
  • Input validation vulnerability in Freemius SDK 2.5.9 (1072 components affected)

    Fixed

    The Freemius SDK for WordPress is vulnerable to an attack known as Reflected Cross-Site Scripting. This attack is possible because of insufficient security measures in versions of the Freemius SDK up ...

    Read More
  • Input validation vulnerability in All-in-One Video Gallery 2.4.9

    Fixed

    Read More
  • Access violation vulnerability in All-in-One Video Gallery 2.6.0

    Fixed

    The All-in-One Video Gallery plugin for WordPress has a security flaw in versions up to and including 2.6.0. This flaw means that people who do not have permission to access the server can download se...

    Read More
  • Access violation vulnerability in Freemius SDK (620 components affected)

    Fixed

    Freemius, a software development kit used by hundreds of WordPress plugin and theme developers, had a security vulnerability in its older versions (up to and including 2.4.2). This vulnerability could...

    Read More