Input validation vulnerability in Portfolio Gallery – Photo Gallery 1.5.7

The Portfolio Gallery plugin for WordPress is not secure in versions up to and including 1.5.7. Attackers could potentially inject bad code into the plugin which would be executed if a user clicks on a link. The plugin does not filter input sufficiently or escape output, making it vulnerable.

Detected in:

Portfolio Gallery – Photo Gallery open vulnerable versions: >= * <= 1.5.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.