Medium severity5.4NVD Advisory· Published Feb 25, 2020· Updated Jun 17, 2026
CVE-2020-9334
CVE-2020-9334
Description
A stored XSS vulnerability exists in the Envira Photo Gallery plugin through 1.7.6 for WordPress. Successful exploitation of this vulnerability would allow a authenticated low-privileged user to inject arbitrary JavaScript code that is viewed by other users.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- WordPress/Envira Photo Gallery plugindescription
- Range: <=1.7.6
Patches
Vulnerability mechanics
References
2- wordpress.org/plugins/envira-gallery-lite/nvdRelease NotesThird Party Advisory
- wpvulndb.com/vulnerabilities/10089nvdThird Party Advisory
News mentions
0No linked articles in our index yet.