Skip to content

Known CVE

WordPress Gallery <2.0.0 - Cross-Site Scripting

WordPress Gallery plugin before 2.0.0 contains a reflected cross-site scripting vulnerability. It does not sanitize and escape a parameter before outputting it back in the response of an AJAX action, available to both unauthenticated and authenticated users.

CVE-2022-1946

Medium2022CVSS 6.1CWE-79

cve2022 · wpscan · wp · xss · wordpress · gallery · unauth · wp-plugin

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website