No analysis available yet.
Vendor Solution
Update the WordPress Modula Image Gallery Plugin to the latest available version (at least 2.14.24).
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 16 Jun 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress wordpress Wpchill Wpchill modula Image Gallery |
|
| Vendors & Products |
Wordpress
Wordpress wordpress Wpchill Wpchill modula Image Gallery |
|
| Metrics |
ssvc
|
Mon, 15 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Subscriber Cross Site Scripting (XSS) in Modula Image Gallery <= 2.14.23 versions. | |
| Title | WordPress Modula Image Gallery plugin <= 2.14.23 - Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-16T01:23:48.798Z
Reserved: 2026-04-29T09:04:56.882Z
Link: CVE-2026-42688
Updated: 2026-06-16T01:23:44.217Z
Status : Deferred
Published: 2026-06-15T21:16:56.990
Modified: 2026-06-15T21:24:32.790
Link: CVE-2026-42688
No data.
OpenCVE Enrichment
Updated: 2026-06-16T05:15:04Z
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')