Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Chill Modula Image Gallery allows Stored XSS.
This issue affects Modula Image Gallery: from 2.14.25 through 2.14.30.
This issue affects Modula Image Gallery: from 2.14.25 through 2.14.30.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
Update the WordPress Modula Image Gallery Plugin to the latest available version (at least 2.14.31).
Workaround
No workaround given by the vendor.
References
History
Thu, 23 Jul 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress wordpress Wpchill Wpchill modula Image Gallery |
|
| Vendors & Products |
Wordpress
Wordpress wordpress Wpchill Wpchill modula Image Gallery |
Thu, 23 Jul 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Chill Modula Image Gallery allows Stored XSS. This issue affects Modula Image Gallery: from 2.14.25 through 2.14.30. | |
| Title | WordPress Modula Image Gallery plugin 2.14.25-2.14.30 - Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-07-23T15:47:33.645Z
Reserved: 2026-07-22T08:53:30.834Z
Link: CVE-2026-65475
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-23T15:15:17Z
Weaknesses