Description
WordPress Plugin Meow Gallery (+ Gallery Block) is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently update arbitrary options. WordPress Plugin Meow Gallery (+ Gallery Block) version 4.1.9 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.2.0 or latest
References
https://sploitus.com/exploit?id=WPEX-ID:6CD95445-22BD-4666-8CF3-7979BFA5422D
https://plugins.svn.wordpress.org/meow-gallery/trunk/readme.txt
Related Vulnerabilities
MediaWiki Other Vulnerability (CVE-2005-1888)
WordPress Plugin WP-Live Chat by 3CX Cross-Site Scripting (7.0.06)
Jenkins Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2023-27900)
MySQL CVE-2018-3195 Vulnerability (CVE-2018-3195)
phpMyFAQ Missing Authorization Vulnerability (CVE-2026-24421)