Enviragallery
2 CVEs tracked since 2021. Since Jan 2021, none of them reached CISA KEV.
Enviragallery CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2021-01 | 2 | 0 |
Products
The products that kept showing up in Enviragallery's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 8 most recently published vulnerabilities affecting Enviragallery.
- CVE-2024-43925WordPress Envira Gallery Lite plugin <= 1.8.14 - Broken Access Control vulnerability4.3
- CVE-2024-3899Envira Gallery < 1.8.15 - Author+ Stored XSS4.8
- CVE-2023-6742Envira Gallery Lite <= 1.8.7.2 - Missing Authorization to Gallery Modification via envira_gallery_insert_images4.3
- CVE-2022-2190Envira Gallery Lite < 1.8.4.7 - Reflected Cross-Site Scripting6.1
- CVE-2021-24126Envira Gallery Lite < 1.8.3.3 - Authenticated Stored Cross-Site Scripting5.4
- CVE-2020-35582A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/post.php request with the post_...5.4
- CVE-2020-35581A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/admin-ajax.php request with the...5.4
- CVE-2020-9334A stored XSS vulnerability exists in the Envira Photo Gallery plugin through 1.7.6 for WordPress. Successful exploitation of this vulnerability would allow a authenticated low-privileged user to in...5.4
The record
- Peak rank
- #155 in Jan 2021
- Busiest month shown
- Jan 2021, 2 CVEs
- Months with a KEV entry
- 0 since Jan 2021
- Monthly snapshots
- 1 since 2021