Skip to content

Known CVE

GRAND FlAGallery 1.57 - Cross-Site Scripting

A cross-site scripting (XSS) vulnerability in facebook.php in the GRAND FlAGallery plugin (flash-album-gallery) before 1.57 for WordPress allows remote attackers to inject arbitrary web script or HTML via the i parameter.

CVE-2011-4624

Medium2011CVSS 4.3CWE-79

cve2011 · wordpress · xss · wp-plugin · codeasily · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website