Gallery PhotoBlocks <= 1.3.2 - Authenticated (Contributor+) Stored Cross-Site Scripting
Gallery PhotoBlocks
Minimum safe version
1.3.3
Update to 1.3.3 or later to address 16 fixable vulnerabilities
CVE-2025-58610
Freemius SDK <= 2.4.2 - Missing Authorization Checks
Gallery PhotoBlocks <= 1.2.8 - Missing Authorization Checks
Gallery Photoblocks < 1.1.41 - Unauthenticated Reflected XSS
Gallery PhotoBlocks < 1.2.0 - Authenticated Cross-Site Scripting (XSS)
WordPress Gallery PhotoBlocks Plugin < 1.3.0 is vulnerable to Cross Site Scripting (XSS)
Gallery Photoblocks <= 1.1.40 - Reflected Cross-Site Scripting
Gallery PhotoBlocks <= 1.1.5 - Cross-Site Scripting
CVE-2022-37407
CVE-2022-36292
WordPress Gallery Photoblocks plugin <= 1.1.40 - Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability
WordPress Gallery Photoblocks plugin <= 1.1.42 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress Gallery PhotoBlocks plugin <= 1.2.4 - Sensitive Information Disclosure vulnerability
WordPress Gallery PhotoBlocks plugin <= 1.2.4 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
CVE-2019-15829