HIGH
gt3themes
CVE published 2026-01-06
CVE-2025-69084
A Cross-site Scripting (XSS) vulnerability exists in the gt3themes Photo Gallery plugin for WordPress, affecting versions from n/a through 2.7.7.26. This issue allows for Reflected XSS attacks. Defenders should assess exposure and prioritize updates or mitigations. The vulnerability can lead to various operational impacts, including potential for Reflected XSS attacks, exposure of sensitive data or sessio [truncated]