Re Gallery – Responsive Image & Photo Gallery Security & Risk Analysis

wordpress.org/plugins/regallery

Photo gallery plugin lets you create responsive, SEO-optimized image gallery with AI generated titles, descriptions & alt text.

600 active installs v1.18.11 PHP 7.0+ WP 4.6+ Updated Apr 15, 2026
galleryimage-gallerylightboxmasonryphoto-gallery
99
A · Safe
CVEs total1
Unpatched0
Last CVEJan 7, 2026
Safety Verdict

Is Re Gallery – Responsive Image & Photo Gallery Safe to Use in 2026?

Generally Safe

Score 99/100

Re Gallery – Responsive Image & Photo Gallery has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.

1 known CVELast CVE: Jan 7, 2026Updated 1mo ago
Risk Assessment

The regallery plugin exhibits a generally good security posture with strengths in its adherence to prepared statements for SQL queries and a high percentage of properly escaped outputs. The lack of detected dangerous functions, direct file operations, and REST API routes also contributes positively. However, the presence of one unpatched medium severity CVE and a medium severity vulnerability history, specifically related to Missing Authorization, raises significant concerns. The taint analysis revealing a flow with an unsanitized path, although not classified as critical or high, warrants attention as it could potentially lead to issues if exploited in conjunction with other weaknesses. The plugin's vulnerability history, while not indicating a pattern of frequent critical issues, shows a recurring theme of authorization problems, suggesting this area needs continuous vigilance and development focus. Overall, while the code exhibits good practices in some areas, the unaddressed CVE and past authorization issues necessitate careful consideration and prompt patching.

Key Concerns

  • Unpatched medium severity CVE
  • Flow with unsanitized path (taint analysis)
  • Vulnerability history of missing authorization
  • Bundled library (Select2) - potential outdatedness
Vulnerabilities
1 published

Re Gallery – Responsive Image & Photo Gallery Security Vulnerabilities

CVEs by Year

1 CVE in 2026
2026
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2026-22486medium · 5.3Missing Authorization

Re Gallery – Responsive Photo Gallery <= 1.18.9 - Missing Authorization

Jan 7, 2026 Patched in 1.18.10 (99d)
Version History

Re Gallery – Responsive Image & Photo Gallery Release Timeline

v1.18.11Current
v1.18.10
v1.18.91 CVE
v1.18.81 CVE
v1.18.71 CVE
v1.18.61 CVE
v1.18.51 CVE
v1.18.41 CVE
v1.18.31 CVE
v1.18.21 CVE
v1.18.11 CVE
v1.18.01 CVE
v1.17.231 CVE
v1.17.221 CVE
v1.17.211 CVE
v1.17.201 CVE
v1.17.191 CVE
v1.17.181 CVE
v1.17.171 CVE
v1.17.161 CVE
Code Analysis
Analyzed Mar 16, 2026

Re Gallery – Responsive Image & Photo Gallery Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
30
236 escaped
Nonce Checks
9
Capability Checks
5
File Operations
0
External Requests
1
Bundled Libraries
1

Bundled Libraries

Select2

Output Escaping

89% escaped266 total outputs
Data Flows · Security
1 unsanitized

Data Flow Analysis

7 flows1 with unsanitized paths
<gallery> (includes\gallery.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Re Gallery – Responsive Image & Photo Gallery Attack Surface

Entry Points7
Unprotected0

AJAX Handlers 7

authwp_ajax_reacg_import_demoincludes\demo.php:421
authwp_ajax_reacg_save_imagesincludes\gallery.php:33
authwp_ajax_reacg_save_thumbnailincludes\gallery.php:34
authwp_ajax_reacg_delete_thumbnailincludes\gallery.php:35
authwp_ajax_reacg_save_galleryincludes\gallery.php:44
authwp_ajax_reacg_get_imagesincludes\gallery.php:46
authwp_ajax_reacg_get_postsincludes\posts.php:9
WordPress Hooks 43
actioninitgallery.php:72
actioninitgallery.php:105
actioninitgallery.php:106
actioninitgallery.php:107
actioninitgallery.php:108
actioninitgallery.php:109
actionwp_enqueue_scriptsgallery.php:112
actionadmin_enqueue_scriptsgallery.php:113
actionenqueue_block_editor_assetsgallery.php:116
actionenqueue_block_assetsgallery.php:117
actionelementor/widgets/widgets_registeredgallery.php:120
actionelementor/editor/after_enqueue_stylesgallery.php:122
actiondivi_extensions_initgallery.php:125
actionvc_before_initgallery.php:128
actioninitgallery.php:131
actioninitgallery.php:134
actionwpmu_new_bloggallery.php:138
actioninitgallery.php:141
actionadmin_initgallery.php:142
filterbody_classgallery.php:144
actionadmin_noticesincludes\admin-notices.php:181
actionadmin_footerincludes\deactivate.php:13
filterplugin_row_metaincludes\deactivate.php:18
actionadmin_footerincludes\form.php:12
actionadmin_menuincludes\gallery.php:13
actionadmin_headincludes\gallery.php:14
actionadmin_footerincludes\gallery.php:15
actionwp_dashboard_setupincludes\gallery.php:17
actionpre_get_postsincludes\gallery.php:23
filterpost_row_actionsincludes\gallery.php:26
actionadmin_action_reacg_duplicate_galleryincludes\gallery.php:27
actionsave_postincludes\gallery.php:29
actiondelete_postincludes\gallery.php:30
filterwp_generate_attachment_metadataincludes\gallery.php:37
filterattachment_fields_to_editincludes\gallery.php:39
filterattachment_fields_to_saveincludes\gallery.php:41
actionrest_api_initincludes\gallery.php:49
actionrest_api_initincludes\gallery.php:65
actionrest_api_initincludes\gallery.php:74
actionrest_api_initincludes\gallery.php:92
filterwp_handle_upload_prefilterincludes\gallery.php:100
actionsave_postincludes\gallery.php:1036
actionadd_meta_boxes_reacgincludes\gallery.php:1111
Maintenance & Trust

Re Gallery – Responsive Image & Photo Gallery Maintenance & Trust

Maintenance Signals

WordPress version tested7.0
Last updatedApr 15, 2026
PHP min version7.0
Downloads21K

Community Trust

Rating100/100
Number of ratings18
Active installs600
Developer Profile

Re Gallery – Responsive Image & Photo Gallery Developer Profile

Hakob

1 plugin · 600 total installs

78
trust score
Avg Security Score
99/100
Avg Patch Time
99 days
View full developer profile
Detection Fingerprints

How We Detect Re Gallery – Responsive Image & Photo Gallery

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/regallery/assets/css/frontend.css/wp-content/plugins/regallery/assets/css/styles.css/wp-content/plugins/regallery/assets/js/frontend.js/wp-content/plugins/regallery/assets/js/scripts.js
Script Paths
/wp-content/plugins/regallery/assets/js/frontend.js/wp-content/plugins/regallery/assets/js/scripts.js
Version Parameters
regallery/assets/css/frontend.css?ver=regallery/assets/css/styles.css?ver=regallery/assets/js/frontend.js?ver=regallery/assets/js/scripts.js?ver=

HTML / DOM Fingerprints

CSS Classes
reacgreacg-dynamic
Data Attributes
data-reacg
JS Globals
REACG_PLUGIN_URLREACG_PLUGIN_ASSETS_URLREACG_VERSIONREACG_NONCEREACG_ALLOWED_POST_TYPES
Shortcode Output
[REACG]
FAQ

Frequently Asked Questions about Re Gallery – Responsive Image & Photo Gallery