Vulnerabilities > Gallery Metabox Project

DATE CVE VULNERABILITY TITLE RISK
2023-07-12 CVE-2023-2561 Unspecified vulnerability in Gallery-Metabox Project Gallery-Metabox 1.5
The Gallery Metabox for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the gallery_remove function in versions up to, and including, 1.5.
network
low complexity
gallery-metabox-project
4.3
2023-07-12 CVE-2023-2562 Missing Authorization vulnerability in Gallery-Metabox Project Gallery-Metabox 1.5
The Gallery Metabox for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the refresh_metabox function in versions up to, and including, 1.5.
network
low complexity
gallery-metabox-project CWE-862
4.3
2023-05-20 CVE-2022-47134 Cross-Site Request Forgery (CSRF) vulnerability in Gallery Metabox Project Gallery Metabox
Cross-Site Request Forgery (CSRF) vulnerability in Bill Erickson Gallery Metabox plugin <= 1.5 versions.
network
low complexity
gallery-metabox-project CWE-352
8.8