← Back to CVE search

CVE-2026-25035

Contest Gallery

Description

Authentication Bypass Using an Alternate Path or Channel vulnerability in Wasiliy Strecker / ContestGallery developer Contest Gallery contest-gallery allows Authentication Abuse.This issue affects Contest Gallery: from n/a through <= 28.1.2.2.

CVSS 9.8EPSS 0.416%Risk 1.02
View source
Published
2026-03-25 17:16:43
Affected versions
<= 28.1.2.2
Type
Package
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H