cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2014-8491,https://securityvulnerability.io/vulnerability/CVE-2014-8491,,The Grand Flagallery plugin before 4.25 for WordPress allows remote attackers to obtain the installation path via a request to (1) flagallery-skins/banner_widget_default/gallery.php or (2) flash-album-gallery/skins/banner_widget_default/gallery.php.,Wordpress,Grand Flagallery,5.3,MEDIUM,0.002099999925121665,false,,false,false,false,,false,false,2017-10-18T14:00:00.000Z,0 CVE-2011-4624,https://securityvulnerability.io/vulnerability/CVE-2011-4624,,Cross-site scripting (XSS) vulnerability in facebook.php in the GRAND FlAGallery plugin (flash-album-gallery) before 1.57 for WordPress allows remote attackers to inject arbitrary web script or HTML via the i parameter.,Wordpress,Grand Flagallery,,,0.006390000227838755,false,,false,false,false,,false,false,2014-10-01T14:00:00.000Z,0