Vulnerabilities (CVE)

Filtered by vendor Imagely Subscribe
Filtered by product Nextgen Gallery
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-10889 1 Imagely 1 Nextgen Gallery 2019-08-16 7.5 HIGH 9.8 CRITICAL
The nextgen-gallery plugin before 2.1.57 for WordPress has SQL injection via a gallery name.
CVE-2018-1000172 1 Imagely 1 Nextgen Gallery 2018-06-07 3.5 LOW 4.8 MEDIUM
Imagely NextGEN Gallery version 2.2.30 and earlier contains a Cross Site Scripting (XSS) vulnerability in Image Alt & Title Text. This attack appears to be exploitable via a victim viewing the image in the administrator page. This vulnerability appears to have been fixed in 2.2.45.