Back

CRITICAL

PhotoSwipe - Responsive JavaScript Modal Image Gallery - Moderately critical - Access bypass - SA-CONTRIB-2026-088

Published Aug 25, 2026

Description

Missing Authorization vulnerability in Drupal PhotoSwipe - Responsive JavaScript Modal Image Gallery allows Forceful Browsing. This issue affects PhotoSwipe - Responsive JavaScript Modal Image Gallery versions: from 0.0.0 to 3.2.0.

Affected products

Remediation

Red Hat statement

This Important vulnerability in Drupal PhotoSwipe does not affect Red Hat products as the vulnerable code is not present in the versions shipped with Red Hat offerings.

Metrics

References (5)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner drupal
Published Aug 25, 2026
Updated Aug 26, 2026
Reserved Jul 22, 2026
CISA Vulnrichment
Updated Aug 26, 2026
NVD
Status Awaiting Analysis
Modified Aug 28, 2026
Red Hat
Severity Important
Public date Aug 25, 2026