The Gallery Images Ape plugin for WordPress is vulnerable to Arbitrary Plugin Deactivation in versions up to, and including, 2.0.6. This allows authenticated attackers with any capability level to deactivate any plugin on the site, including plugins necessary to site functionality or security.
Metrics
Affected Vendors & Products
References
History
Wed, 08 Apr 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Gallery Images Ape <= 2.0.6 - Authenticated Plugin Deactivation | |
| Weaknesses | CWE-285 |
Sat, 21 Dec 2024 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Wordfence
Published: 2023-06-07T01:51:47.456Z
Updated: 2026-04-08T17:28:33.797Z
Reserved: 2023-06-06T13:23:36.874Z
Link: CVE-2019-25149
Updated: 2024-08-05T03:00:19.386Z
Status : Modified
Published: 2023-06-07T02:15:10.700
Modified: 2026-04-08T19:17:32.510
Link: CVE-2019-25149
No data.