Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-57434
HistoryMay 18, 2022 - 12:00 a.m.

WordPress Gmedia Photo Gallerys plugin跨站脚本漏洞

2022-05-1800:00:00
China National Vulnerability Database
www.cnvd.org.cn
18
wordpress
gmedia photo gallerys
cross-site scripting
vulnerability
javascript
client side

EPSS

0.001

Percentile

24.8%

WordPress and WordPress plugin are both products of the WordPress Foundation. WordPress is a set of blogging platforms developed using the PHP language. WordPress plugin is an application plugin. WordPress Gmedia Photo Gallerys plugin version 1.20.0 before version 1.20.0 has a cross-site scripting vulnerability, which stems from a failure to clean up and escape Album’s name. An attacker could exploit this vulnerability to execute JavaScript code on the client side.

EPSS

0.001

Percentile

24.8%