The NextGen Gallery plugin for WordPress has a security vulnerability. This vulnerability can be exploited by unauthenticated attackers. If they gain access, they can get sensitive information from the database. This vulnerability exists in versions up to 2.1.77 due to inadequate escaping of user-supplied parameters and lack of preparation of existing SQL queries.