Input validation vulnerability in Video Gallery by Huzzaz 10.5

The Huzzaz plugin for WordPress, called the Video Gallery, has a security issue called Stored Cross-Site Scripting. This means that the plugin is not properly protecting against harmful code being inserted into the website. This vulnerability exists in all versions of the plugin up to version 10.5. As a result, attackers who have contributor-level access or higher can inject their own malicious code into pages on the website. This code will then run whenever a user visits the affected page.

Detected in:

Video Gallery by Huzzaz open vulnerable versions: >= * <= 10.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.