6.1
CVSSv3

CVE-2021-39313

CVSSv4: NA | CVSSv3: 6.1 | CVSSv2: 4.3 | VMScore: 710 | EPSS: 0.00199 | KEV: Not Included
Published: 14/12/2021 Updated: 21/11/2024

Vulnerability Summary

The Simple Image Gallery WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the msg parameter found in the ~/simple-image-gallery.php file which allows malicious users to inject arbitrary web scripts, in versions up to and including 1.0.6.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

duogeek simple image gallery