Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.9
CVE-2024-5442
The Photo Gallery, Sliders, Proofing and WordPress plugin before 3.59.3 does not sanitise and escape some of its settings, which could allow high p…
Nextgen Gallery
3.59.3+
MEDIUM 5.3
CVE-2024-3097EPSS 38%
The WordPress Gallery Plugin – NextGEN Gallery plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on…
Nextgen Gallery
3.59.1+
HIGH 8.8
CVE-2023-48328
Cross-Site Request Forgery (CSRF) vulnerability in Imagely WordPress Gallery Plugin – NextGEN Gallery allows Cross Site Request Forgery.This issue af…
Nextgen Gallery
3.39+
HIGH 7.5
CVE-2023-3154
The WordPress Gallery Plugin WordPress plugin before 3.39 is vulnerable to PHAR Deserialization due to a lack of input parameter validation in the `g…
Nextgen Gallery
3.39+
HIGH 7.2
CVE-2023-3155
The WordPress Gallery Plugin WordPress plugin before 3.39 is vulnerable to Arbitrary File Read and Delete due to a lack of input parameter validation…
Nextgen Gallery
3.39+
HIGH 8.8
CVE-2015-1784
In nextgen-galery wordpress plugin before 2.0.77.3 there are two vulnerabilities which can allow an attacker to gain full access over the web applica…
Nextgen Gallery
2.0.77.3+
MEDIUM 6.5
CVE-2015-1785
In nextgen-galery wordpress plugin before 2.0.77.3 there are two vulnerabilities which can allow an attacker to gain full access over the web applica…
Nextgen Gallery
2.0.77.3+
MEDIUM 6.1
CVE-2021-24293
In the eCommerce module of the NextGEN Gallery Pro WordPress plugin before 3.1.11, there is an action to call get_cart_items via photocrati_ajax , af…
Nextgen Gallery
3.1.11+
MEDIUM 6.5
CVE-2020-35943
A Cross-Site Request Forgery (CSRF) issue in the NextGEN Gallery plugin before 3.5.0 for WordPress allows File Upload. (It is possible to bypass CSRF…
Nextgen Gallery
3.5.0+
HIGH 8.8
CVE-2020-35942
A Cross-Site Request Forgery (CSRF) issue in the NextGEN Gallery plugin before 3.5.0 for WordPress allows File Upload and Local File Inclusion via se…
Nextgen Gallery
3.5.0+
CRITICAL 9.8
CVE-2013-3684EPSS 19%
NextGEN Gallery plugin before 1.9.13 for WordPress: ngggallery.php file upload
Nextgen Gallery
1.9.13+
HIGH 7.5
CVE-2013-0291EPSS 16%
NextGEN Gallery Plugin for WordPress 1.9.10 and 1.9.11 has a Path Disclosure Vulnerability
Nextgen Gallery
No fix yet
MEDIUM 6.5
CVE-2015-9538EPSS 10%
The NextGEN Gallery plugin before 2.1.15 for WordPress allows ../ Directory Traversal in path selection.
Nextgen Gallery
2.1.15+
MEDIUM 5.4
CVE-2015-9537
The NextGEN Gallery plugin before 2.1.10 for WordPress has multiple XSS issues involving thumbnail_width, thumbnail_height, thumbwidth, thumbheight, …
Nextgen Gallery
2.1.10+
CRITICAL 9.8
CVE-2019-14314EPSS 43%
A SQL injection vulnerability exists in the Imagely NextGEN Gallery plugin before 3.2.11 for WordPress. Successful exploitation of this vulnerability…
Nextgen Gallery
3.2.10+
CRITICAL 9.8
CVE-2016-10889
The nextgen-gallery plugin before 2.1.57 for WordPress has SQL injection via a gallery name.
Nextgen Gallery
2.1.57+
HIGH 7.5
CVE-2016-6565
The Imagely NextGen Gallery plugin for Wordpress prior to version 2.1.57 does not properly validate user input in the cssfile parameter of a HTTP POS…
Nextgen Gallery
2.1.57+
HIGH 7.5
CVE-2018-7586
In the nextgen-gallery plugin before 2.2.50 for WordPress, gallery paths are not secured.
Nextgen Gallery
after 2.2.46
HIGH 8.8
CVE-2015-9228
In post-new.php in the Photocrati NextGEN Gallery plugin 2.1.10 for WordPress, unrestricted file upload is available via the name parameter, if a fil…
Nextgen Gallery
No fix yet