Security Advisory
CVE-2015-9537
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The NextGEN Gallery plugin before 2.1.10 for WordPress has multiple XSS issues involving thumbnail_width, thumbnail_height, thumbwidth, thumbheight, wmXpos, and wmYpos, and template.