Get real-time updates on Telegram
Verified
CVE-2026-107323: Gallery PhotoBlocks 1.3.5 to before 1.3.6
Affected technology
Gallery PhotoBlocks · 1.3.5 to before 1.3.6
Vendor not specified by the source
Description’s affected range: before 1.3.6 does not sanitize and escape one of its gallery settings before outputting it into an HTML attribute
Component: Not specified by the source
What an attacker can do
The source does not specify what an attacker can achieve.
- KEV
- no
Provenance
- GitHub Advisory Database · Source record · observed 2026-10-10 07:23:45.480922+00:00 UTC
- NVD CVE API 2.0 · Source record · observed 2026-10-10 06:17:36.054866+00:00 UTC
Stable permalink: https://cybercodered.org/item/cve-cve-2026-107323.html