CVE-2026-12982
Document Gallery < 5.1.1 - Reflected XSS via dg_generate_gallery
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The Document Gallery WordPress plugin before 5.1.1 does not properly sanitise and escape user input before reflecting it back in the response of an unauthenticated AJAX action, leading to a Reflected Cross-Site Scripting vulnerability which can be exploited against unauthenticated users.
| Vendor | unknown |
| Product | document gallery |
| Published | Jul 27, 2026 |
Stay Ahead of the Next One
Get instant alerts for unknown document gallery
Be the first to know when new unknown vulnerabilities affecting unknown document gallery are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Unknown / Document Gallery
0 < 5.1.1
References
Credits
Joรฃo Ramos Maciel WPScan