Vulnerabilities > Marcel Brinkkemper > Lazyest Gallery > 1.1.13

DATE CVE VULNERABILITY TITLE RISK
2014-04-11 CVE-2014-2333 Cross-Site Scripting vulnerability in Marcel Brinkkemper Lazyest-Gallery
Cross-site scripting (XSS) vulnerability in the Lazyest Gallery plugin before 1.1.21 for WordPress allows remote attackers to inject arbitrary web script or HTML via an EXIF tag.
network
high complexity
marcel-brinkkemper CWE-79
2.6