Access violation vulnerability in Contest Gallery – Upload, Vote & Sell with PayPal and Stripe 28.0.2

The Contest Gallery plugin for WordPress has a security issue where anyone, even without an account, can add their own media to galleries and change the gallery details. This can’t be used to move or upload files, but it’s still a problem.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.