CVE-2019-16117: 10web Photo Gallery
Medium severity, CVSS 6.1. EPSS: 4.6% chance of exploitation in the next 30 days.
Cross site scripting (XSS) in the photo-gallery (10Web Photo Gallery) plugin before 1.5.35 for WordPress exists via admin/models/Galleries.php.
Affected products
- 10web Photo Gallery: before 1.5.35 (fixed in 1.5.35)
Published 2019-09-08. Last modified 2026-06-17.