Input validation vulnerability in ImagePress – Image Gallery 1.2.2

The ImagePress – Image Gallery plugin for WordPress has a security issue that allows attackers to insert harmful web scripts into pages, which will be executed when someone visits the page. This vulnerability affects all versions up to 1.2.2 and can only be exploited by authenticated attackers with administrator-level permissions. The issue only affects multi-site installations and those with unfiltered_html disabled.

Detected in:

ImagePress – Image Gallery fixed vulnerable versions: >= * <= 1.2.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.