CVE-2024-43925: Enviragallery Envira Gallery
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
Missing Authorization vulnerability in Envira Gallery Team Envira Photo Gallery allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Envira Photo Gallery: from n/a through 1.8.14.
Affected products
- Enviragallery Envira Gallery: before 1.8.15 (fixed in 1.8.15)
Published 2024-11-01. Last modified 2026-06-17.