Executive brief
The Gallery plugin for WordPress, which is used to manage and display image galleries on websites, contains a security vulnerability. An attacker with basic contributor-level access to the site could manipulate database queries to steal sensitive information or disrupt site operations. This could lead to unauthorized data access or a partial loss of service.
Technical details
A SQL injection vulnerability exists in the BestWebSoft Gallery plugin for WordPress (versions <= 4.7.8) due to improper neutralization of special elements used in SQL commands (CWE-89). The vulnerability requires 'Contributor' level authentication (PR:L) and can be exploited over the network without user interaction. An attacker can leverage this flaw to execute arbitrary SQL queries against the underlying database, potentially leading to sensitive data exfiltration or unauthorized modifications. The issue is addressed in version 4.7.9.
Affected products
- BestWebSoft Gallery <= 4.7.8
Timeline
- 2026-05-13: disclosed: Reported by dodoh4t
- 2026-06-26: advisory: Published by Patchstack and NVD
- 2026-06-26: patched: Version 4.7.9 released to address the issue