Description
WordPress Plugin WordPress Photo Gallery-Image Gallery is prone to a cross-site request forgery vulnerability. Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected application; other attacks are also possible. WordPress Plugin WordPress Photo Gallery-Image Gallery version 1.0.6 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.0.8 or latest
References
Related Vulnerabilities
Oracle JRE CVE-2014-2409 Vulnerability (CVE-2014-2409)
Atlassian Jira URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2019-11589)
WordPress Plugin Adminer Cross-Site Scripting (1.4.2)
MySQL CVE-2012-2750 Vulnerability (CVE-2012-2750)
Apache Tomcat Unprotected Transport of Credentials Vulnerability (CVE-2023-28708)