CVE-2015-9414: Wpsymposiumpro Wp-Symposium

Medium severity, CVSS 6.1. EPSS: 3.6% chance of exploitation in the next 30 days.

The wp-symposium plugin through 15.8.1 for WordPress has XSS via the wp-content/plugins/wp-symposium/get_album_item.php?size parameter.

Affected products

Published 2019-09-26. Last modified 2026-06-17.