Vulnerabilities > Visualportfolio > Visual Portfolio Photo Gallery Post Grid > 2.18.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-09-05 | CVE-2022-2597 | Unspecified vulnerability in Visualportfolio Visual Portfolio, Photo Gallery & Post Grid The Visual Portfolio, Photo Gallery & Post Grid WordPress plugin before 2.19.0 does not have proper authorisation checks in some of its REST endpoints, allowing users with a role as low as contributor to call them and inject arbitrary CSS in arbitrary saved layouts | 5.4 |