Filtered by vendor Wp-video-gallery-free Project Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-0826 1 Wp-video-gallery-free Project 1 Wp-video-gallery-free 2022-05-16 9.8 Critical
The WP Video Gallery WordPress plugin through 1.7.1 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action, leading to an SQL Injection exploitable by unauthenticated users