CVE-2015-9537: XSS
Published Nov 26, 2019
·Updated
The NextGEN Gallery plugin before 2.1.10 for WordPress has multiple XSS issues involving thumbnailwidth, thumbnailheight, thumbwidth, thumbheight, wmXpos, and wmYpos, and template.
Affected Software
1 affected component
Imagely Nextgen Gallery Wordpress<2.1.10
Remediation
Patch Available
Event History
Nov 26, 2019
CVE Published
via MITRE·02:59 PM
Data Sourced
via MITRE·02:59 PM
Description
Frequently Asked Questions
1
What is CVE-2015-9537?
CVE-2015-9537 is a vulnerability in the NextGEN Gallery plugin for WordPress that allows for multiple XSS issues.
2
How does CVE-2015-9537 impact WordPress?
CVE-2015-9537 can be exploited to perform cross-site scripting attacks on WordPress websites using the vulnerable NextGEN Gallery plugin.
3
What is the severity of CVE-2015-9537?
CVE-2015-9537 has a severity rating of medium, with a CVSS score of 5.4.
4
How do I fix CVE-2015-9537 in NextGEN Gallery plugin?
To fix CVE-2015-9537, you should update the NextGEN Gallery plugin to version 2.1.10 or newer.
5
Where can I find more information about CVE-2015-9537?
You can find more information about CVE-2015-9537 on the Cybersecurity Works website, the GitHub issue, and the WordPress NextGEN Gallery plugin page.