FooGallery – Responsive Photo Gallery, Image Viewer, Justified, Masonry and Carousel 2.4.29 was found to be vulnerable. The web application dynamically generates web content without validating the source of the potentially untrusted data in myapp/extensions/albums/admin/class-meta boxes.php.
History

Tue, 04 Mar 2025 03:45:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 27 Feb 2025 18:45:00 +0000

Type Values Removed Values Added
Description FooGallery – Responsive Photo Gallery, Image Viewer, Justified, Masonry and Carousel 2.4.29 was found to be vulnerable. The web application dynamically generates web content without validating the source of the potentially untrusted data in myapp/extensions/albums/admin/class-meta boxes.php.
Title FooGallery – Responsive Photo Gallery, Image Viewer, Justified, Masonry and Carousel 2.4.29 - Reflected cross-site scripting (XSS)
Weaknesses CWE-79
References
Metrics cvssV4_0

{'score': 6.4, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:H/SI:H/SA:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Fluid Attacks

Published: 2025-02-27T18:26:27.030Z

Updated: 2025-02-27T18:59:21.413Z

Reserved: 2025-01-07T16:26:19.300Z

Link: CVE-2025-22624

cve-icon Vulnrichment

Updated: 2025-02-27T18:59:03.877Z

cve-icon NVD

Status : Received

Published: 2025-02-27T19:15:50.940

Modified: 2025-02-27T19:15:50.940

Link: CVE-2025-22624

cve-icon Redhat

No data.