
CVE-2026-5347 The HM Books Gallery plugin for WordPress is vulnerable to Missing Authorization in versions up to and including 4.8.0. This is due to the absence of capability checks … https://www.cve.org/CVERecord?id=CVE-2026-5347
Post summary
This post reports that CVE-2026-5347 affects the HM Books Gallery plugin up to version 4.8.0 due to missing authorization checks, with no evidence of active exploitation, PoC, or available patch.
