Input validation vulnerability in Gallery – Video Gallery and YouTube Gallery 1.7.01

The Gallery – Video Gallery and YouTube Gallery plugin for WordPress is vulnerable to a type of attack called Stored Cross-Site Scripting. This type of attack allows attackers to inject malicious code into webpages. The vulnerability exists in versions up to and including 1.7.01 due to the plugin not properly sanitizing or escaping user inputs. When a user visits an affected webpage, the malicious code can be executed.

Detected in:

Gallery - Video Gallery and YouTube Gallery open vulnerable versions: >= * < 1.7.01

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.