Vulnerabilities > Navz > ACF Photo Gallery Field > 1.7.9

DATE CVE VULNERABILITY TITLE RISK
2023-07-27 CVE-2023-3957 Incorrect Authorization vulnerability in Navz ACF Photo Gallery Field
The ACF Photo Gallery Field plugin for WordPress is vulnerable to unauthorized modification of data due to an insufficient restriction on the 'apg_profile_update' function in versions up to, and including, 1.9.
network
low complexity
navz CWE-863
4.3