cleantalk
Vulnerabilities and Security Researches

Sunshine Photo Cart: Free Client Galleries for Photographers, CVE-2026-42776

CVE, Research URL

CVE-2026-42776

Published on
May 26, 2026
Research Description
Missing Authorization vulnerability in WP Sunshine Sunshine Photo Cart allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Sunshine Photo Cart: from n/a through 3.6.7.
Affected versions
max 3.6.8.
Status
vulnerable