First published: Wed Mar 29 2023(Updated: )
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in wpdevart Gallery – Image and Video Gallery with Thumbnails plugin <= 2.0.1 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Wpdevart Image And Video Gallery With Thumbnails | <2.0.2 |
Update to 2.0.2 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-47603 is an Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability in the wpdevart Gallery - Image and Video Gallery with Thumbnails plugin, version 2.0.1 and below.
The severity of CVE-2022-47603 is high, with a CVSS score of 6.1.
CVE-2022-47603 allows an attacker to inject malicious scripts into the plugin, potentially leading to unauthorized actions or data theft.
To mitigate CVE-2022-47603, update the wpdevart Gallery - Image and Video Gallery with Thumbnails plugin to version 2.0.2 or later, as it contains a fix for this vulnerability.
You can find more information about CVE-2022-47603 at the following URL: https://patchstack.com/database/vulnerability/gallery-album/wordpress-gallery-image-and-video-gallery-with-thumbnails-plugin-2-0-1-cross-site-scripting-xss?_s_id=cve