Vulnerabilities > Robogallery

DATE CVE VULNERABILITY TITLE RISK
2024-01-31 CVE-2024-22295 Cross-site Scripting vulnerability in Robogallery Robo Gallery
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RoboSoft Photo Gallery, Images, Slider in Rbs Image Gallery allows Stored XSS.This issue affects Photo Gallery, Images, Slider in Rbs Image Gallery: from n/a through 3.2.17.
network
low complexity
robogallery CWE-79
5.4
2023-09-04 CVE-2023-3499 Unspecified vulnerability in Robogallery Robo Gallery
The Photo Gallery, Images, Slider in Rbs Image Gallery WordPress plugin before 3.2.16 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)
network
low complexity
robogallery
4.8
2023-06-07 CVE-2019-25149 Unspecified vulnerability in Robogallery Gallery Images APE
The Gallery Images Ape plugin for WordPress is vulnerable to Arbitrary Plugin Deactivation in versions up to, and including, 2.0.6.
network
low complexity
robogallery
4.3
2023-04-07 CVE-2023-27620 Cross-site Scripting vulnerability in Robogallery Robo Gallery
Auth.
network
low complexity
robogallery CWE-79
5.4
2023-03-21 CVE-2022-41785 Cross-site Scripting vulnerability in Robogallery Gallery Images APE
Auth.
network
low complexity
robogallery CWE-79
5.4
2023-03-01 CVE-2022-45804 Cross-Site Request Forgery (CSRF) vulnerability in Robogallery Robo Gallery
Cross-Site Request Forgery (CSRF) vulnerability in RoboSoft Photo Gallery, Images, Slider in Rbs Image Gallery plugin <= 3.2.9 leading to galleries hierarchy change, included plugin deactivate & activate.
network
low complexity
robogallery CWE-352
5.4