PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-105976 Portfolio Filter Gallery CVE debrief

The Portfolio Filter Gallery WordPress plugin before 2.2.1 does not perform proper authorization checks in a set of AJAX actions, allowing users with at least the Contributor role to read, modify and delete other users' galleries as well as site-wide gallery filters. This vulnerability allows Contributor+ users to potentially modify or delete galleries and filters without proper authorization, which could lead to unauthorized data exposure or modification. Defenders should assess the exposure of their WordPress installations with the Portfolio Filter Gallery plugin and verify version 2.2.1 or later. The CVE record and source item provide details on the vulnerability, but additional

Vendor
Portfolio Filter Gallery
Product
Portfolio Filter Gallery
CVSS
Unknown
CISA KEV
Not listed in stored evidence
Original CVE published
2026-10-10
Original CVE updated
2026-10-10
Advisory published
2026-10-10
Advisory updated
2026-10-10

Who should care

Defenders managing WordPress installations with the Portfolio Filter Gallery plugin should assess exposure and verify version 2.2.1 or later. This includes reviewing the plugin's version, assessing the potential impact of the vulnerability, and taking steps to remediate the vulnerability. Additionally, defenders should restrict permissions for Contributor role users and monitor for suspicious AJAX actions. The operational impact of this vulnerability is

Why it matters

CVE-2026-105976 allows Contributor+ users to read, modify, and delete galleries and filters in Portfolio Filter Gallery plugin before 2.2.1.

  • Potential unauthorized gallery and filter modifications
  • Possible data exposure through gallery access
  • Required verification of affected versions and remediation
  • Need for restricted Contributor role permissions

Technical summary

The Portfolio Filter Gallery WordPress plugin before 2.2.1 is vulnerable to missing authorization in AJAX actions, allowing Contributor+ users to read, modify, and delete galleries and filters. This vulnerability is due to insufficient authorization checks in the plugin's AJAX actions, which could allow unauthorized access to sensitive data or functionality. The technical impact of this vulnerability is that an attacker with at least the Contributor role could potentially read, modify, or delete galleries and filters, leading to data exposure or modification.

Defensive priority

Defenders should prioritize verifying exposure of Portfolio Filter Gallery installations and restrict Contributor role permissions.

Recommended defensive actions

  • Verify Portfolio Filter Gallery installations for version 2.2.1 or later
  • Restrict permissions for Contributor role users
  • Monitor for suspicious AJAX actions
  • Review compensating controls for exposed systems while remediation is scheduled and verified
  • Check relevant monitoring, detection, and logs for exposed assets that need extra review
  • Track exceptions, retest remediated assets, and close the item only after evidence is documented
  • Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up

Evidence notes

The CVE record and source item provide details on the vulnerability, but additional verification is needed to confirm affected versions and remediation. The Portfolio Filter Gallery WordPress plugin before 2.2.1 is vulnerable to missing authorization in AJAX actions, allowing Contributor+ users to read, modify, and delete galleries and filters. The source item details and CVE Program record provide evidence of the vulnerability, but defenders should verify the affected versions and remediation efforts. Additional review of the plugin

Sources and references

Verified primary and authoritative sources

  • CVE-2026-105976 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2026-105976

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2026-105976 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2026-105976

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.