Input validation vulnerability in WP Easy Gallery – WordPress Gallery Plugin 2.7

The WP Easy Gallery for WordPress is vulnerable to a security issue called Cross-Site Request Forgery. This affects versions of the plugin up to and including 2.7. The issue is caused by incorrect or missing security measures called nonce validation on certain functions. This means that unauthenticated attackers can gain access to certain administrative actions by tricking a site administrator into clicking on a link or something similar.

Detected in:

WP Easy Gallery – WordPress Gallery Plugin open vulnerable versions: >= * <= 2.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.