Input validation vulnerability in flash-photo-gallery 0.7

Cross-site scripting (XSS) is a security vulnerability that can be found in the Flash Photo Gallery plugin version 0.7 and earlier for WordPress. It allows people who don’t have permission to inject web scripts or HTML into a website via the path parameter.

Detected in:

flash-photo-gallery open vulnerable versions: >= * <= 0.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.