CVE-2026-78088 | Contest Gallery Plugin up to 32.0.1 on WordPress File Path Validation baseUrlForFacebook unrestricted upload
A vulnerability marked as critical has been reported in Contest Gallery Plugin up to 32.0.1 on WordPress. This issue affects some unknown processing of the component File Path Validation. This manipulation of the argument baseUrlForFacebook causes unrestricted upload.
The identification of this vulnerability is CVE-2026-78088. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More