Input validation vulnerability in gallery 2.2.1

The Gallery plugin used in WordPress has a security issue, known as Stored Cross-Site Scripting. This problem affects versions up to and including 2.2.1, and is caused by not properly cleaning up the input and output. This means that someone who is logged in to the website and has at least author-level access can add harmful code to a page that will run whenever someone else visits that page.

Detected in:

Gallery fixed vulnerable versions: >= * <= 2.2.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.