PatchSiren

gt3themes CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH gt3themes CVE published 2026-01-06

CVE-2025-69084

A Cross-site Scripting (XSS) vulnerability exists in the gt3themes Photo Gallery plugin for WordPress, affecting versions from n/a through 2.7.7.26. This issue allows for Reflected XSS attacks. Defenders should assess exposure and prioritize updates or mitigations. The vulnerability can lead to various operational impacts, including potential for Reflected XSS attacks, exposure of sensitive data or sessio [truncated]