---
id: CVE-2026-81652
title: >-
  The Photo Gallery, Sliders, Proofing and   WordPress plugin before 4.5.0 does
  not verify that the requesting user is entitled to a given image record before
  returning it, allowing users with the Contributor role and above to read the
  sto…
summary: >-
  The Photo Gallery, Sliders, Proofing and   WordPress plugin before 4.5.0 does
  not verify that the requesting user is entitled to a given image record before
  returning it, allowing users with the Contributor role and above to read the
  sto…
severity: low
cvss: 2.7
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N'
cwe:
  - CWE-639
product: 'Photo Gallery, Sliders, Proofing and Themes'
affected:
  - photo_gallery_sliders_proofing_and_themes >= 3.59.5 < 4.5.0
published: '2026-09-20'
updated: '2026-09-21'
sourceUpdated: '2026-09-21T13:34:57.127'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-81652'
references:
  - url: 'https://wpscan.com/vulnerability/58759289-adca-47d5-8c15-c073c9f14c31/'
    label: contact@wpscan.com
tags:
  - nvd
  - cve.org
epss: 0.00299
epssPercentile: 0.20155
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2026-09-20T13:48:04.578457Z'
ingestedAt: '2026-09-20T07:16:12.224Z'
---

## Overview

The Photo Gallery, Sliders, Proofing and   WordPress plugin before 4.5.0 does not verify that the requesting user is entitled to a given image record before returning it, allowing users with the Contributor role and above to read the stored metadata of any image on the site, including images in galleries belonging to other users. The disclosed data includes the image's stored EXIF subset, covering camera make and model and capture timestamp, along with internal checksums and identifiers that the Photo Gallery, Sliders, Proofing and   WordPress plugin before 4.5.0's own capability-gated read path reserves to administrators.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
