WordPress Gallery Bank Plugin <= 4.0.18 is vulnerable to Cross Site Scripting (XSS)
Gallery Bank – WordPress Photo Gallery Plugin
Minimum safe version
4.0.19
Update to 4.0.19 or later to address 15 fixable vulnerabilities
Gallery Bank – WordPress Photo Gallery Plugin < 2.0.20 - Reflected Cross-Site Scripting
PrettyPhoto Library (Multiple Plugins and Themes) <= 3.1.4 - DOM Cross-Site Scripting
Gallery Bank – WordPress Photo Gallery Plugin < 3.0.61 - Arbitrary File Upload
Gallery Bank – WordPress Photo Gallery <= 3.0.101 - SQL Injection
Gallery Bank – WordPress Photo Gallery Plugin <= 3.0.229 - SQL Injection
Gallery Bank – WordPress Photo Gallery Plugin <= 4.0.50 - Stored Cross-Site Scripting via Gallery Description
Gallery Bank – WordPress Photo Gallery Plugin <= 4.0.50 - Stored Cross-Site Scripting via Media Upload
Gallery Bank 2.0.19 - Multiple Unspecified Issues
Gallery Bank 2.0.19 - edit-album.php album_id Parameter Reflected XSS
Gallery Bank 2.0.19 - album-gallery-bank-class.php recordsArray Parameter Reflected XSS
Gallery Bank <= 3.0.60 - Shell Upload
Gallery Bank <= 3.0.101 - SQL Injection
Gallery Bank <= 3.0.229 - Authenticated Blind SQL Injection
Gallery Bank <= 4.0.50 - Author+ Stored XSS via Media Upload Module
Gallery Bank <= 4.0.50 - Author+ Stored XSS via Gallery Description
Multiple Plugins - jQuery prettyPhoto DOM Cross-Site Scripting (XSS)
WordPress Gallery Bank Plugin <= 3.0.228 - Cross Site Scripting
WordPress Gallery Bank plugin <= 4.0.50 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability via Gallery Description
WordPress Gallery Bank plugin <= 4.0.50 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability via Media Upload Module
CVE-2014-8758