Unrated severityNVD Advisory· Published Sep 20, 2026
CVE-2026-81653
CVE-2026-81653
Description
The Photo Gallery, Sliders, Proofing and WordPress plugin before 4.5.0 does not verify that the user acting on an image owns the gallery it belongs to, allowing users granted its gallery-management capability by an administrator to delete, copy and re-tag any image on the site, including images in galleries belonging to other users.
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.