Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Photo Gallery by 10Web — Vulnerabilities & Security Advisories 15

All 15 CVE vulnerabilities found in Photo Gallery by 10Web, with AI-generated Chinese analysis, references, and POCs.

This page documents common vulnerabilities, weaknesses, and security issues associated with the Photo Gallery by 10Web WordPress plugin, tagged under product-specific security tracking. It aggregates reported security flaws, ranging from cross-site scripting and authorization bypasses to information disclosure and insecure direct object references, covering incidents reported from 2021 through early 2024. By consulting this resource, users and security professionals can track the vendor’s historical advisory patterns, gain a deeper understanding of specific weakness classes affecting this plugin, and review the complete vulnerability history to assess risk exposure over time. The data is compiled from various public sources, including vendor advisories, security bulletins, and community disclosures, ensuring a comprehensive view of the plugin’s security posture. This aggregation serves as a reference point for developers, site administrators, and security auditors who need to evaluate the integrity of installations using Photo Gallery by 10Web. Understanding these vulnerabilities helps in prioritizing patch management, implementing security hardening measures, and maintaining compliance with security best practices. The page does not provide exploit code or remediation steps but focuses on cataloging known issues to support informed decision-making regarding plugin usage and update cycles.

Vendor: Unknown

CVE IDTitleCVSSSeverityPublished
CVE-2026-32330 WordPress Photo Gallery by 10Web plugin <= 1.8.37 - Cross Site Request Forgery (CSRF) vulnerability CWE-352 4.3 Medium2026-03-13
CVE-2026-27360 WordPress Photo Gallery by 10Web plugin <= 1.8.38 - Cross Site Scripting (XSS) vulnerability CWE-79 5.9 Medium2026-02-19
CVE-2024-8670 Photo Gallery by 10Web < 1.8.29 - Admin+ Stored XSS 4.8AIMediumAI2025-05-15
CVE-2025-0613 Photo Gallery < 1.8.34 - Unauthenticated Stored XSS 6.1 -2025-03-31
CVE-2024-13124 Photo Gallery by 10Web < 1.8.33 - Admin+ Stored XSS 4.8AIMediumAI2025-03-24
CVE-2023-33995 WordPress Photo Gallery by 10Web plugin <= 1.8.15 - Broken Access Control vulnerability CWE-862 4.3 Medium2024-12-13
CVE-2024-10704 Photo Gallery by 10Web < 1.8.31 - Admin+ Stored XSS 4.8 -2024-11-29
CVE-2024-5968 Photo Gallery by 10Web <= 1.8.27 - Admin+ Stored XSS 4.8AIMediumAI2024-10-09
CVE-2024-44043 WordPress Photo Gallery by 10Web plugin <= 1.8.27 - Cross Site Scripting (XSS) vulnerability CWE-79 5.9 Medium2024-10-06
CVE-2024-35628 WordPress Photo Gallery by 10Web plugin <= 1.8.25 - Broken Access Control vulnerability CWE-862 4.3 Medium2024-06-11
CVE-2024-33586 WordPress Photo Gallery by 10Web plugin <= 1.8.20 - Broken Access Control vulnerability CWE-862 5.3 Medium2024-04-29
CVE-2024-32583 WordPress Photo Gallery by 10Web plugin <= 1.8.21 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2024-04-18
CVE-2023-1427 Photo Gallery by 10Web < 1.8.15 - Admin+ Path Traversal 4.9 -2023-04-17
CVE-2022-4058 Photo Gallery < 1.8.3 - Stored XSS via CSRF 5.4 -2022-12-19
CVE-2021-24139 Photo Gallery by 10Web < 1.5.55 - Unauthenticated SQL Injection CWE-89 9.8 -2021-03-18

All 15 known CVE vulnerabilities affecting Photo Gallery by 10Web with full Chinese analysis, references, and POCs where available.