The photo-gallery plugin before 1.2.42 for WordPress has CSRF.Referenceshttps://wordpress.org/plugins/photo-gallery/#developershttps://wpvulndb.com/vulnerabilities/7225https://wordpress.org/support/topic/this-plugin-is-reported-as-vulnerable/