CVE-2026-39481: Wp Chill Modula Image Gallery

High severity, CVSS 7.2. EPSS: 0.5% chance of exploitation in the next 30 days.

Author PHP Object Injection in Modula Image Gallery <= 2.14.18 versions.

Affected products

  • Wp Chill Modula Image Gallery: up to and including 2.14.18

Published 2026-06-15. Last modified 2026-06-17.