Vulnerability Details CVE-2022-4060
The User Post Gallery WordPress plugin through 2.19 does not limit what callback functions can be called by users, making it possible to any visitors to run code on sites running it.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.913
EPSS Ranking 99.6%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-4060
-
cpe:2.3:a:odude:user_post_gallery:2.19