Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-28349 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Contest Gallery allows Reflected XSS.This issue affects Contest Gallery: from n/a through 21.3.5. |
Fri, 24 Apr 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 23 Apr 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Wed, 01 Apr 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Contest Gallery allows Reflected XSS.This issue affects Contest Gallery: from n/a through 21.3.5. | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Wasiliy Strecker / ContestGallery developer Contest Gallery contest-gallery allows Reflected XSS.This issue affects Contest Gallery: from n/a through <= 24.0.3. |
| Title | WordPress Contest Gallery plugin <= 21.3.5 - Reflected Cross Site Scripting (XSS) vulnerability | WordPress Contest Gallery plugin <= 24.0.3 - Reflected Cross Site Scripting (XSS) vulnerability |
| References |
| |
| Metrics |
cvssV3_1
|
cvssV3_1
|
Thu, 27 Feb 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Contest-gallery
Contest-gallery contest Gallery |
|
| CPEs | cpe:2.3:a:contest-gallery:contest_gallery:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Contest-gallery
Contest-gallery contest Gallery |
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-04-28T16:09:22.999Z
Reserved: 2024-03-27T05:57:07.765Z
Link: CVE-2024-30428
Updated: 2024-08-02T01:32:07.368Z
Status : Modified
Published: 2024-03-29T14:15:09.677
Modified: 2026-04-23T15:18:11.527
Link: CVE-2024-30428
No data.
OpenCVE Enrichment
No data.
EUVD