CVE-2021-24903
The GRAND FlaGallery WordPress plugin through 6.1.2 does not sanitise and escape some of its gallery settings, which could allow high privilege users to perform Cross-Site scripting attacks even when the unfiltered_html capability is disallowed.
Date published : 2022-02-28
https://wpscan.com/vulnerability/ad67e45e-254a-46ce-a243-bfc86839446e
