Browse all 15 CVE security advisories affecting Wasiliy Strecker / ContestGallery developer. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Wasiliy Strecker develops ContestGallery, a WordPress plugin for managing photo and video contests. Historically, the plugin has been vulnerable to multiple security issues, including remote code execution, cross-site scripting, and privilege escalation vulnerabilities, contributing to 13 CVEs. Common weaknesses involve insufficient input validation and improper access controls. In 2023, a critical flaw allowed unauthenticated attackers to execute arbitrary code, leading to widespread exploitation. The plugin's frequent updates and complex functionality have introduced recurring security challenges, making it a persistent target for attackers. Strecker's codebase often requires immediate patching due to high-impact vulnerabilities affecting thousands of WordPress sites.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-42680 | WordPress Contest Gallery Pro plugin <= 29.0.1 - Privilege Escalation vulnerability — Contest Gallery ProCWE-266 | 9.8 | Critical | 2026-06-01 |
This page lists every published CVE security advisory associated with Wasiliy Strecker / ContestGallery developer. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.