Medium severity5.4NVD Advisory· Published Apr 8, 2026· Updated Apr 24, 2026
CVE-2026-39603
CVE-2026-39603
Description
Cross-Site Request Forgery (CSRF) vulnerability in ThemeGoods Grand Photography grandphotography allows Cross Site Request Forgery.This issue affects Grand Photography: from n/a through <= 5.7.8.
Affected products
1- Range: <=5.7.8
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
2- Exploit Cyber-Frenzy Threatens Millions via Critical cPanel VulnerabilityDark Reading · May 4, 2026
- Wordfence Intelligence Weekly WordPress Vulnerability Report (April 6, 2026 to April 12, 2026)Wordfence Blog · Apr 16, 2026