Home/Product/total soft video gallery
Product

total soft video gallery

15 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-9769
< 2.4.2
The Video Gallery - Best WordPress YouTube Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin set
4.4MEDIUM
CVE-2024-10247
< 2.4.3
The Video Gallery - Best WordPress YouTube Gallery Plugin for WordPress is vulnerable to time-based SQL Injection via the o
7.2HIGH
CVE-2024-52430
<= 0.2.1
Deserialization of Untrusted Data vulnerability in bublick Lis Video Gallery lis-video-gallery allows Object Injection.This issue
9.8CRITICAL
CVE-2024-4551
< 1.3.14
The Video Gallery - YouTube Playlist, Channel Gallery by YotuWP plugin for WordPress is vulnerable to Local File Inclusion in all
6.4MEDIUM
CVE-2024-4258
< 1.3.14
The Video Gallery - YouTube Playlist, Channel Gallery by YotuWP plugin for WordPress is vulnerable to Local File Inclusion in all
9.8CRITICAL
CVE-2023-45069
<= 2.1.4
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Video Gallery by Total-Soft
7.6HIGH
CVE-2023-25477
< 1.3.13
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Yotuwp Video Gallery plugin <= 1.3.12 versions.
5.9MEDIUM
CVE-2023-32597
<= 1.0.10
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in I Thirteen Web Solution Video Gallery plugin <= 1.0.10 versions.
7.1HIGH
CVE-2023-2708
< 1.0.11
The Video Gallery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘search_term’ parameter in vers
6.1MEDIUM
CVE-2023-25979
< 1.7.7
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Video Gallery by Total-Soft Video Gallery plugin <= 1.7.6 versi
5.9MEDIUM
CVE-2022-35726
< 1.3.5
Broken Authentication vulnerability in yotuwp Video Gallery plugin <= 1.3.4.5 at WordPress.
4.3MEDIUM
CVE-2021-24515
< 1.1.5
The Video Gallery WordPress plugin before 1.1.5 does not escape the Title and Description of the videos in a gallery before output
4.8MEDIUM
CVE-2016-1000123
all versions
Unauthenticated SQL Injection in Huge-IT Video Gallery v1.0.9 for Joomla
9.8CRITICAL
CVE-2014-9094
all versions
Multiple cross-site scripting (XSS) vulnerabilities in deploy/designer/preview.php in the Digital Zoom Studio (DZS) Video Gallery
CVE-2014-3923
all versions
Multiple cross-site scripting (XSS) vulnerabilities in the Digital Zoom Studio (DZS) Video Gallery plugin for WordPress allow remo
threatengine.sh