CVE-2026-104079
Envira Gallery Lite < 1.16.2 Missing Authorization via Gallery Conversion REST Endpoint
CVSS Score
4.3
EPSS Score
0.0%
EPSS Percentile
0th
Envira Gallery Lite before 1.16.2 contains a missing authorization vulnerability in its gallery conversion REST endpoint that allows lower-privileged authenticated users to create and publish Envira galleries without the required capabilities, because the endpoint only checks edit permissions on the source post and uses a hard-coded publish status. Attackers can also supply arbitrary caller-controlled image IDs without ownership verification to publish unauthorized content using attachments they are not authorized to use.
| CWE | CWE-862 |
| Vendor | syed balkhi |
| Product | envira gallery |
| Published | Oct 9, 2026 |
| Last Updated | Oct 9, 2026 |
Stay Ahead of the Next One
Get instant alerts for syed balkhi envira gallery
Be the first to know when new medium vulnerabilities affecting syed balkhi envira gallery are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
Low
Availability
None
Affected Versions
Syed Balkhi / Envira Gallery
0 < 1.16.2
References
Credits
Paul Serban (LazyTitan)