CVE-2025-62910
WordPress Video Gallery by Huzzaz plugin <= 10.5 - Cross Site Scripting (XSS) vulnerability
CVSS Score
5.4
EPSS Score
0.0%
EPSS Percentile
0th
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in deshine Video Gallery by Huzzaz huzzaz-video-gallery allows Stored XSS.This issue affects Video Gallery by Huzzaz: from n/a through <= 10.5.
| CWE | CWE-79 |
| Vendor | deshine |
| Product | video gallery by huzzaz |
| Published | Oct 27, 2025 |
| Last Updated | Apr 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for deshine video gallery by huzzaz
Be the first to know when new medium vulnerabilities affecting deshine video gallery by huzzaz are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
deshine / Video Gallery by Huzzaz
0 โค 10.5
References
Credits
Muhammad Yudha - DJ | Patchstack Bug Bounty Program