CVE-2017-1002011: Anblik Image-Gallery-With-Slideshow

Medium severity, CVSS 5.4. EPSS: 1% chance of exploitation in the next 30 days.

Vulnerability in wordpress plugin image-gallery-with-slideshow v1.5.2, There is a stored XSS vulnerability via the $value->gallery_name and $value->gallery_description where anyone with privileges to modify or add galleries/images and inject javascript into the database.

Affected products

  • Anblik Image-Gallery-With-Slideshow: version 1.5.2 only

Published 2017-09-14. Last modified 2026-06-17.