Medium severity4.8NVD Advisory· Published Apr 30, 2018· Updated Jun 17, 2026
CVE-2018-1000172
CVE-2018-1000172
Description
Imagely NextGEN Gallery version 2.2.30 and earlier contains a Cross Site Scripting (XSS) vulnerability in Image Alt & Title Text. This attack appears to be exploitable via a victim viewing the image in the administrator page. This vulnerability appears to have been fixed in 2.2.45.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<=2.2.30+ 1 more
- (no CPE)range: <=2.2.30
- (no CPE)range: <=2.2.30
Patches
Vulnerability mechanics
References
2- fortiguard.com/zeroday/FG-VD-17-215nvdThird Party Advisory
- wordpress.org/plugins/nextgen-gallery/nvdRelease Notes
News mentions
0No linked articles in our index yet.