Skip to main content
Loading…
    CVE-2026-5361 — The Envira Gallery Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the REST API in versions up to and including 1.12.4. This is due to insufficient input sanitization in the — CVE Database · The Intelligence Room