The Rbs Image Gallery plugin for WordPress has a vulnerability that allows hackers to inject harmful code through the admin settings. This can only be done by someone with administrator-level access and it only affects certain types of installations.