Input validation vulnerability in Lazyest Gallery 1.1.21

Cross-site scripting (XSS) is a type of security vulnerability that allows an attacker to insert malicious code into a website. A vulnerability in the Lazyest Gallery plugin before version 1.1.21 for WordPress made it possible for a remote attacker to embed malicious web scripts or HTML code into the plugin through an EXIF tag.

Detected in:

Lazyest Gallery open vulnerable versions: >= * < 1.1.21

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.