Vulnerabilities > Essentialplugin > High

DATE CVE VULNERABILITY TITLE RISK
2024-06-06 CVE-2024-4194 Unspecified vulnerability in Essentialplugin Album and Image Gallery Plus Lightbox
The The Album and Image Gallery plus Lightbox plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.0.
network
low complexity
essentialplugin
7.3
2023-03-29 CVE-2022-38077 Cross-Site Request Forgery (CSRF) vulnerability in Essentialplugin Popup Anything
Cross-Site Request Forgery (CSRF) vulnerability in WP OnlineSupport, Essential Plugin Popup Anything – A Marketing Popup and Lead Generation Conversions plugin <= 2.2.1 versions.
network
low complexity
essentialplugin CWE-352
8.8