First published: Thu Apr 24 2025(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nayon46 Awesome Wp Image Gallery allows Stored XSS. This issue affects Awesome Wp Image Gallery: from n/a through 1.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Awesome WP Image Gallery | <=1.0 | |
Awesome WP Image Gallery | <=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-46476 is classified as a high severity vulnerability due to its potential for enabling stored cross-site scripting (XSS) attacks.
To fix CVE-2025-46476, you should update the Awesome WP Image Gallery plugin to the latest version that addresses this vulnerability.
CVE-2025-46476 is an improper neutralization of input during web page generation, specifically a stored cross-site scripting (XSS) vulnerability.
CVE-2025-46476 affects Awesome WP Image Gallery versions up to and including 1.0.
Users of the Awesome WP Image Gallery plugin for WordPress who are running versions up to 1.0 are impacted by CVE-2025-46476.