CVE-2026-105976
EUVD-2026-9612110.10.2026, 06:16
The Portfolio Filter Gallery WordPress plugin before 2.2.1 does not perform proper authorization checks in a set of AJAX actions, allowing users with at least the Contributor role to read, modify and delete other users' galleries as well as site-wide gallery filters.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.