Skip to main content

CVE detail

CVE-2022-38135

Broken Access Control vulnerability in Dean Oakley's Photospace Gallery plugin <= 2.3.5 at WordPress allows users with subscriber or higher role to change plugin settings.

CVSS 5.4 · Medium