WordPress security by component
Digital Zoom Studio (DZS) Video Gallery
Plugin description
Digital Zoom Studio (DZS) Video Gallery creates video galleries and displays videos in configurable layouts with playback controls and navigation.
Digital Zoom Studio (DZS) Video Gallery (video-gallery) is a WordPress plugin with 5 published CVE records in this archive. The latest tracked vulnerability was published Dec 06, 2024; the highest published CVSS base score is 9.8.
Plugin slug:
video-galleryLatest vulnerability
CVE-2024-9769: Video Gallery – Best WordPress YouTube Gallery: Cross-site scripting
Video Gallery – Best WordPress YouTube Gallery is affected by cross-site scripting. Exploitation requires an authenticated administrator account. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
| Safe version |
|
||
|---|---|---|---|
| Dec 06, 2024 |
CVE-2024-9769
Video Gallery – Best WordPress YouTube Gallery: Cross-site scripting
Video Gallery – Best WordPress YouTube Gallery is affected by cross-site scripting. Exploitation requires an authenticated administrator account. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE4.4
NVD4.8
|
| Nov 18, 2024 |
CVE-2024-52430
Lis Video Gallery: Code execution
Lis Video Gallery is affected by code execution. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can run attacker-controlled code in the WordPress hosting account.
|
See mitigation notes |
CVE9.8
NVD9.8
|
| Oct 25, 2021 |
CVE-2021-24515
Video Gallery: Cross-site scripting
Video Gallery is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVEPending
NVD4.8
|
| Nov 26, 2014 |
CVE-2014-9094
Digital Zoom Studio (DZS) Video Gallery: Cross-site scripting
Digital Zoom Studio (DZS) Video Gallery is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVEPending
NVD4.3
|
| May 30, 2014 |
CVE-2014-3923
Digital Zoom Studio (DZS) Video Gallery: Cross-site scripting
Digital Zoom Studio (DZS) Video Gallery is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVEPending
NVD4.3
|