Vulnerabilities > Gubbigubbi > Kona Gallery Block

DATE CVE VULNERABILITY TITLE RISK
2025-01-30 CVE-2024-13400 Cross-site Scripting vulnerability in Gubbigubbi Kona Gallery Block
The Kona Gallery Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the "Kona: Instagram for Gutenberg" Block, specifically in the "align" attribute, in all versions up to, and including, 1.7 due to insufficient input sanitization and output escaping.
network
low complexity
gubbigubbi CWE-79
5.4