Vulnerability Database

289,871

Total vulnerabilities in the database

CVE-2024-2744

The NextGEN Gallery WordPress plugin before 3.59.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

  • Published: May 17, 2024
  • Updated: May 22, 2025
  • CVE: CVE-2024-2744
  • Exploit:

No technical information available.