CVE-2026-92974 | 10Web Photo Gallery by 10Web Plugin up to 1.8.46 on WordPress AJAX Action editimage_bwg thumb_url cross site scripting
A vulnerability was found in 10Web Photo Gallery by 10Web Plugin up to 1.8.46 on WordPress. It has been rated as problematic. This issue affects the function editimage_bwg of the component AJAX Action Handler. This manipulation of the argument thumb_url causes cross site scripting.
The identification of this vulnerability is CVE-2026-92974. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More