CVE-2015-9414: Wpsymposiumpro Wp-Symposium
Medium severity, CVSS 6.1. EPSS: 3.6% chance of exploitation in the next 30 days.
The wp-symposium plugin through 15.8.1 for WordPress has XSS via the wp-content/plugins/wp-symposium/get_album_item.php?size parameter.
Affected products
- Wpsymposiumpro Wp-Symposium: up to and including 15.8.1
Published 2019-09-26. Last modified 2026-06-17.