Title: xss vulnerability plugin
Last modified: August 30, 2016

---

# xss vulnerability plugin

 *  Resolved [suite_xss](https://wordpress.org/support/users/suite_xss/)
 * (@suite_xss)
 * [10 years, 8 months ago](https://wordpress.org/support/topic/xss-vulnerability-plugin/)
 * found such vulnerability result working wpscan:
    [!] Title: WP Photo Album Plus
   <= 4.1.1 – SQL Injection [!] Title: WP Photo Album Plus <= 4.8.12 – wp-photo-
   album-plus.php wppa-searchstring XSS [!] Title: WP Photo Album Plus – Full Path
   Disclosure [!] Title: WP Photo Album Plus – index.php wppa-tag Parameter XSS [!]
   Title: WP Photo Album Plus – “commentid” Cross-Site Scripting [!] Title: WP Photo
   Album Plus – wp-admin/admin.php edit_id Parameter XSS [!] Title: WP Photo Album
   Plus 5.4.5 – 5.4.8 Stored XSS [!] Title: WP Photo Album Plus 5.4.4 & 5.4.3 Cross-
   Site Scripting (XSS)
 * [https://wordpress.org/plugins/wp-easy-gallery/](https://wordpress.org/plugins/wp-easy-gallery/)

Viewing 1 replies (of 1 total)

 *  Plugin Author [hahncgdev](https://wordpress.org/support/users/hahncgdev/)
 * (@hahncgdev)
 * [10 years, 5 months ago](https://wordpress.org/support/topic/xss-vulnerability-plugin/#post-6600854)
 * Same as previous – wrong plugin

Viewing 1 replies (of 1 total)

The topic ‘xss vulnerability plugin’ is closed to new replies.

 * ![](https://s.w.org/plugins/geopattern-icon/wp-easy-gallery.svg)
 * [WP Easy Gallery - WordPress Gallery Plugin](https://wordpress.org/plugins/wp-easy-gallery/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/wp-easy-gallery/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/wp-easy-gallery/)
 * [Active Topics](https://wordpress.org/support/plugin/wp-easy-gallery/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/wp-easy-gallery/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/wp-easy-gallery/reviews/)

 * 1 reply
 * 2 participants
 * Last reply from: [hahncgdev](https://wordpress.org/support/users/hahncgdev/)
 * Last activity: [10 years, 5 months ago](https://wordpress.org/support/topic/xss-vulnerability-plugin/#post-6600854)
 * Status: resolved