Known Vulnerabilities for Gallery by Bharat Mediratta
Listed below are 2 of the newest known vulnerabilities associated with "Gallery" by "Bharat Mediratta".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65713 json | Joomla Extension - regularlabs.com - Insecure path handling in Modals Pro extension - Modals gallery paths could enumerate un... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65519 json | Author Cross Site Scripting (XSS) in Photo Gallery <= 2.7.7.29 versions. | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65475 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Chill Modula Image G... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-59707 json | LocalAI contains an unauthenticated server-side request forgery vulnerability in the POST /models/apply endpoint that allows ... | Not Provided | 2026-07-07 | 2026-07-09 |
| CVE-2026-57755 json | Contributor Cross Site Scripting (XSS) in Mosaic Gallery – Advanced Gallery <= 1.2.0 versions. | Not Provided | 2026-07-02 | 2026-07-02 |
| CVE-2026-57696 json | Contributor Arbitrary File Deletion in Picture Gallery <= 1.6.5 versions. | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-57695 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dan Rossiter Document G... | Not Provided | 2026-07-13 | 2026-07-13 |
| CVE-2026-57662 json | Contributor SQL Injection in Contest Gallery <= 30.0.0 versions. | Not Provided | 2026-06-26 | 2026-06-26 |
| CVE-2026-57642 json | Contributor SQL Injection in Gallery <= 4.7.8 versions. | Not Provided | 2026-06-26 | 2026-06-29 |
| CVE-2026-55745 json | Cotonti 1.0.0 (master branch, commit f43f1fc3) is vulnerable to Cross-Site Request Forgery in the Personal File Storage (PFS)... | Not Provided | 2026-06-18 | 2026-06-18 |