PT-2026-27907 · Unknown · Simple Gallery
CVE-2026-25345
·
Publicado
2026-03-25
·
Atualizado
2026-03-30
CVSS v3.1
9.9
Crítica
| Vetor | AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
SimpLy Gallery versions n/a through 3.3.2
Description
An improper validation of the specified quantity in input within the GalleryCreator SimpLy Gallery
simply-gallery-block component allows access to functionality that is not properly restricted by Access Control Lists (ACLs). This could allow unauthorized access to functionality.Recommendations
Update SimpLy Gallery to a version later than 3.3.2.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Simple Gallery