Gallagher Website Design

Gallagher Website Design has one disclosed vulnerability in the WordSec catalog, all reported in 2026; it is fixed as of August 2026. Their average CVSS score is 6.4, and the most serious one scores 6.4 out of 10.

The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).

The one issue recorded for Gallagher Website Design has a vendor fix available, so running the current release closes it.

All of these findings were reported by zaim. Gallagher Website Design is installed on roughly 60 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.3.

Strategic Overview

Avg CVSSMedium
6.4/ 10
Patch Coverage100%
Open

0

Fixed

1

Get automatic notifications for all Gallagher Website Design vulnerabilities before they are exploited.

Highest severity on recordCVSS 6.4CVE-2026-1913

Gallagher Website Design <= 2.6.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'prefix' Shortcode Attribute

Read the full analysis

Vulnerability Records

1 records
Gallagher Website Design banner
Latestv2.9.0

Gallagher Website Design

Gallagher Website Design

Author

Gallagher Website Design

0.0(0)
0/100
Last Updated
2026-05-27 (3mo ago)
Active Installs
60+
Downloads
5,629
Requires WP
4.6+
Requires PHP
5.2.4+
Tested up to
WP 7.0.3
Created
2023-01-26 (4y ago)

This plugin provides how-to videos on editing your website, as well as a number of features to websites developed by Gallagher Website Design. For more information about this plugin you can checkout our web page at Gallagher Website Design.

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C