Vulnerabilities > AYS PRO > Photo Gallery > 5.2.5
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-07-09 | CVE-2024-37442 | Unspecified vulnerability in Ays-Pro Photo Gallery Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in Photo Gallery Team Photo Gallery by Ays allows Code Injection.This issue affects Photo Gallery by Ays: from n/a before 5.7.1. | 5.5 |
2023-10-03 | CVE-2023-39917 | Unspecified vulnerability in Ays-Pro Photo Gallery Cross-Site Request Forgery (CSRF) vulnerability in Photo Gallery Team Photo Gallery by Ays – Responsive Image Gallery plugin <= 5.2.6 versions. | 8.8 |