Gallery Plugin for WordPress – Envira Photo Gallery

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Responsive Lightbox & Gallery 2.4.8

    Fixed

    Several plugins used on WordPress websites are at risk of a type of hacking called Stored Cross-Site Scripting. This happens because the plugins use a JavaScript library called FancyBox that is not p...

    Read More
  • Access violation vulnerability in Gallery Plugin for WordPress – Envira Photo Gallery 1.8.14

    Fixed

    The Envira Photo Gallery plugin for WordPress has a security issue that allows unauthorized changes to be made to data. This is because the envira_gallery_ajax_load_gallery_data() function does not h...

    Read More
  • Input validation vulnerability in Gallery Plugin for WordPress – Envira Photo Gallery 1.8.14

    Fixed

    The Envira Photo Gallery plugin for WordPress, known as the Gallery Plugin, has a security issue that allows hackers to inject harmful code through the gallery image title field. This can only be don...

    Read More
  • Input validation vulnerability in Gallery Plugin for WordPress – Envira Photo Gallery 1.8.7.3

    Fixed

    The Envira Photo Gallery plugin for WordPress is not secure in versions up to and including 1.8.7.3. This is because it does not properly check for a special code when performing certain actions. Thi...

    Read More
  • Access violation vulnerability in Gallery Plugin for WordPress – Envira Photo Gallery 1.8.7.2

    Fixed

    The Envira Photo Gallery plugin for WordPress is vulnerable to unauthorized changes to data. This means that anyone with access to the plugin, at a contributor level or higher, can make changes to ot...

    Read More
  • Input validation vulnerability in Gallery Plugin for WordPress – Envira Photo Gallery 1.7.7

    Fixed

    Read More
  • Input validation vulnerability in Gallery Plugin for WordPress – Envira Photo Gallery 1.8.4.7

    Fixed

    The Envira Photo Gallery plugin for WordPress is not secure in versions up to 1.8.4.6. This means that an unauthenticated person can inject malicious code into a page if they can get a user to click a...

    Read More
  • Input validation vulnerability in Gallery Plugin for WordPress – Envira Photo Gallery 1.8.3.3

    Fixed

    The Envira Gallery Lite WordPress plugin

    Read More