Known Vulnerabilities for Contest Gallery by Wasiliy Strecker ContestGallery Developer
Listed below are 10 of the newest known vulnerabilities associated with "Contest Gallery" by "Wasiliy Strecker ContestGallery Developer".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-42680 json | Incorrect Privilege Assignment vulnerability in Wasiliy Strecker / ContestGallery developer Contest Gallery Pro allows Privil... | Not Provided | 2026-06-01 | 2026-06-01 |
| CVE-2026-42660 json | Subscriber Sensitive Data Exposure in Contest Gallery <= 28.1.7 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-42657 json | Unauthenticated Other Vulnerability Type in Contest Gallery <= 28.1.7 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-42656 json | Subscriber Cross Site Scripting (XSS) in Contest Gallery <= 28.1.6 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-40771 json | Unauthenticated SQL Injection in Contest Gallery <= 28.1.6 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-25035 json | Authentication Bypass Using an Alternate Path or Channel vulnerability in Wasiliy Strecker / ContestGallery developer Contest... | Not Provided | 2026-03-25 | 2026-04-23 |
| CVE-2026-24964 json | Server-Side Request Forgery (SSRF) vulnerability in Wasiliy Strecker / ContestGallery developer Contest Gallery contest-galle... | Not Provided | 2026-03-25 | 2026-04-23 |
| CVE-2026-12165 json | The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is vulnerable to Privileg... | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2026-8912 json | The Contest Gallery plugin for WordPress is vulnerable to SQL Injection via the 'form_input' parameter in versions up to, and... | Not Provided | 2026-05-19 | 2026-05-19 |
| CVE-2026-4021 json | The Contest Gallery plugin for WordPress is vulnerable to an authentication bypass leading to admin account takeover in all v... | Not Provided | 2026-03-24 | 2026-04-08 |