Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in J.N. Breetvelt a.K.A. OpaJaap WP Photo Album Plus allows Stored XSS.This issue affects WP Photo Album Plus: from n/a through 8.5.02.005.

Project Subscriptions

Vendors Products
Wp Photo Album Plus Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2023-53721 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in J.N. Breetvelt a.K.A. OpaJaap WP Photo Album Plus allows Stored XSS.This issue affects WP Photo Album Plus: from n/a through 8.5.02.005.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 20 Mar 2026 18:45:00 +0000

Type Values Removed Values Added
First Time appeared Wppa
Wppa wp Photo Album Plus
CPEs cpe:2.3:a:wp_photo_album_plus_project:wp_photo_album_plus:*:*:*:*:*:wordpress:*:* cpe:2.3:a:wppa:wp_photo_album_plus:*:*:*:*:*:wordpress:*:*
Vendors & Products Wp Photo Album Plus Project
Wp Photo Album Plus Project wp Photo Album Plus
Wppa
Wppa wp Photo Album Plus

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published:

Updated: 2024-08-02T22:01:26.026Z

Reserved: 2023-11-30T14:51:04.753Z

Link: CVE-2023-49813

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-12-14T16:15:52.080

Modified: 2026-03-20T18:34:07.417

Link: CVE-2023-49813

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses