Vulnerabilities > 10Web > Photo Gallery > 1.6.2
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-05-02 | CVE-2022-1282 | Unspecified vulnerability in 10Web Photo Gallery The Photo Gallery by 10Web WordPress plugin before 1.6.3 does not properly sanitize the $_GET['image_url'] variable, which is reflected back to the users when executing the editimage_bwg AJAX action. | 6.1 |