🔐 CVE Alert

CVE-2023-3957

MEDIUM 4.3

ACF Photo Gallery Field <= 1.9 - Authenticated (Subscriber+) Arbitrary Usermeta Update

CVSS Score
4.3
EPSS Score
0.0%
EPSS Percentile
0th

The ACF Photo Gallery Field plugin for WordPress is vulnerable to unauthorized modification of data due to an insufficient restriction on the 'apg_profile_update' function in versions up to, and including, 1.9. This makes it possible for authenticated attackers, with subscriber-level permissions or above, to update the user metas arbitrarily. The meta value can only be a string.

CWE CWE-285
Vendor navzme
Product acf photo gallery field
Published Jul 27, 2023
Last Updated Apr 8, 2026
Stay Ahead of the Next One

Get instant alerts for navzme acf photo gallery field

Be the first to know when new medium vulnerabilities affecting navzme acf photo gallery field are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

navzme / ACF Photo Gallery Field
0 ≤ 1.9

References

NVD ↗ CVE.org ↗ EPSS Data ↗
wordfence.com: https://www.wordfence.com/threat-intel/vulnerabilities/id/689511e0-1355-4fcb-8a72-d819abc8e9a3?source=cve plugins.trac.wordpress.org: https://plugins.trac.wordpress.org/browser/navz-photo-gallery/tags/1.9/includes/acf_photo_gallery_save.php#L42 plugins.trac.wordpress.org: https://plugins.trac.wordpress.org/changeset/2943404/navz-photo-gallery#file0

Credits

István Márton