Title: netsted's Replies | WordPress.org

---

# netsted

  [  ](https://wordpress.org/support/users/netsted/)

 *   [Profile](https://wordpress.org/support/users/netsted/)
 *   [Topics Started](https://wordpress.org/support/users/netsted/topics/)
 *   [Replies Created](https://wordpress.org/support/users/netsted/replies/)
 *   [Reviews Written](https://wordpress.org/support/users/netsted/reviews/)
 *   [Topics Replied To](https://wordpress.org/support/users/netsted/replied-to/)
 *   [Engagements](https://wordpress.org/support/users/netsted/engagements/)
 *   [Favorites](https://wordpress.org/support/users/netsted/favorites/)

 Search replies:

## Forum Replies Created

Viewing 2 replies - 1 through 2 (of 2 total)

 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[SimpLy Gallery] Cross Site Scripting (XSS) Vulnerability](https://wordpress.org/support/topic/cross-site-scripting-xss-vulnerability-34/)
 *  [netsted](https://wordpress.org/support/users/netsted/)
 * (@netsted)
 * [1 year, 5 months ago](https://wordpress.org/support/topic/cross-site-scripting-xss-vulnerability-34/#post-18404051)
 * Thank you for your quick reply! I am the administrator of a few WordPress websites
   hosted @ one.com. Their hosting solution includes a Health and Security monitoring
   that yesterday warned about the vulnerablity that I posted. You might want to
   make contact to the company for further infomation,
   Regards,Michael B
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[SimpLy Gallery] Cross Site Scripting (XSS) Vulnerability](https://wordpress.org/support/topic/cross-site-scripting-xss-vulnerability-34/)
 *  [netsted](https://wordpress.org/support/users/netsted/)
 * (@netsted)
 * [1 year, 5 months ago](https://wordpress.org/support/topic/cross-site-scripting-xss-vulnerability-34/#post-18403123)
 * I have the same issue in my websites, it was reported yesterday Sunday April 
   6.
 * From my WordPress Dashboard:
   **Your website is vulnerable due to SimpLy Gallery
   Block & Lightbox**
 * Medium
 * Current version: **3.2.5** Fix version: **Not available**
 * Outdated plugins make your site vulnerable to security attacks. We recommend 
   uninstalling any plugins that you don’t need.
 * **Vulnerabilities**
    - XSS flaws occur whenever an application includes untrusted data in a new web
      page without proper validation or escaping, or updates an existing web page
      with user-supplied data using a browser API to create HTML or JavaScript. 
      XSS allows attackers to execute scripts in the victim’s browser, which can
      hijack user sessions, deface websites, or redirect the user to malicious sites.
      
      [See more details](https://patchstack.com/database/vulnerability/simply-gallery-block/wordpress-gallery-blocks-with-lightbox-plugin-3-2-5-stored-cross-site-scripting-xss-vulnerability?_a_id=250)
 *  -  This reply was modified 1 year, 5 months ago by [netsted](https://wordpress.org/support/users/netsted/).
    -  This reply was modified 1 year, 5 months ago by [netsted](https://wordpress.org/support/users/netsted/).

Viewing 2 replies - 1 through 2 (of 2 total)