
CVE-2026-2312 The Media Library Folders plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 8.3.6 via the delete_maxgalleria_… https://www.cve.org/CVERecord?id=CVE-2026-2312
Post summary
The Media Library Folders WordPress plugin is disclosed to have an IDOR vulnerability in all versions up to 8.3.6 via the delete_maxgalleria_… parameter, with the CVE record linked for reference.
