📦 Contest Gallery

by Contest Gallery

🔍 What is Contest Gallery?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-24915

CRITICAL CVSS 9.8 Nov 29, 2021

This vulnerability in the Contest Gallery WordPress plugin allows unauthenticated attackers to perform SQL injection attacks and retrieve all registered users' usernames and email addresses. It affect...

CVE-2025-1513

HIGH CVSS 7.2 Feb 28, 2025

This stored XSS vulnerability in the Contest Gallery WordPress plugin allows unauthenticated attackers to inject malicious scripts into photo gallery comment fields. The scripts execute automatically ...

CVE-2025-22693

HIGH CVSS 7.6 Feb 3, 2025

This SQL injection vulnerability in the Contest Gallery WordPress plugin allows attackers to execute arbitrary SQL commands on the database. It affects all versions up to and including 25.1.0. WordPre...

CVE-2024-39631

HIGH CVSS 7.1 Aug 1, 2024

This stored cross-site scripting (XSS) vulnerability in the WordPress Contest Gallery plugin allows attackers to inject malicious scripts into web pages. When users view pages containing the malicious...

CVE-2024-30236

HIGH CVSS 8.5 Mar 28, 2024

This SQL injection vulnerability in the WordPress Contest Gallery plugin allows attackers to execute arbitrary SQL commands on affected websites. It affects all versions up to 21.3.4, potentially comp...

CVE-2023-28784

HIGH CVSS 7.1 Jun 22, 2023

This vulnerability allows unauthenticated attackers to inject malicious scripts into WordPress sites using the Contest Gallery plugin. When users visit a specially crafted URL, the script executes in ...

CVE-2025-3862

MEDIUM CVSS 6.4 May 8, 2025

The Contest Gallery WordPress plugin has a stored cross-site scripting (XSS) vulnerability in all versions up to 26.0.6. Authenticated attackers with Contributor-level access or higher can inject mali...