WordPress Portfolio Gallery – Responsive Image Gallery plugin <= 1.4.6 - Broken Access Control vulnerability
CVE-2023-32585
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 13 December 2024
What is CVE-2023-32585?
A missing authorization vulnerability exists in Total-Soft's Portfolio Gallery – Responsive Image Gallery that allows attackers to exploit improperly configured access control mechanisms. This flaw can lead to unauthorized users gaining access to restricted content or functionalities within the gallery. The issue notably affects versions prior to 1.4.6, emphasizing the importance of applying appropriate access control measures and regularly updating plugins to mitigate potential security risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Portfolio Gallery – Responsive Image Gallery <= 1.4.6
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved