Skip to main content

Vendor archive

navz CVEs

Beta · best-effort

2 CVEs tagged to vendor navz0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2023-3957

Published Jul 27, 2023

The ACF Photo Gallery Field plugin for WordPress is vulnerable to unauthorized modification of data due to an insufficient restriction on the 'apg_profile_update' function in vers…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2021-24909

Published Jan 17, 2022

The ACF Photo Gallery Field WordPress plugin before 1.7.5 does not sanitise and escape the post parameter in the includes/acf_photo_gallery_metabox_edit.php file before outputing…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1