CVE-2025-13646 | Modula Image Gallery Plugin up to 2.13.1/2.13.2 on WordPress ajax_unzip_file race condition (EUVD-2025-200723)
A vulnerability labeled as problematic has been found in Modula Image Gallery Plugin up to 2.13.1/2.13.2 on WordPress. This affects the function ajax_unzip_file. Executing manipulation can lead to race condition.
This vulnerability appears as CVE-2025-13646. The attack may be performed from remote. There is no available exploit.