Input validation vulnerability in WP Simple Galleries 1.34

The WP Simple Galleries plugin for WordPress, up to and including version 1.34, is vulnerable to an attack. An attacker with at least contributor-level permissions could use the vulnerability to inject a malicious code. This code could then be used by the attacker to delete files, access sensitive data, or run code on the target system. If the target system has additional plugins or themes installed, the attacker may be able to use a “POP chain” to further enhance the attack.

Detected in:

WP Simple Galleries open vulnerable versions: >= * <= 1.34

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.