Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe
by Wasiliy Strecker / ContestGallery developer · Uncategorized
Create voting and upload galleries for photos, video, audio and files. PRO adds PDF previews. Social sharing, registration and PayPal/Stripe.
87 health vs 56 average across 16,376 Uncategorized plugins
Directory ranking optimization
How it's scored →How well this listing is tuned to rank in WordPress.org search, on the factors an owner controls. Not popularity, optimization.
Excellent listing optimization
Well tuned across the board
Daily downloads
Since 2022-10-05 · 1,425 days · wp.org + Plugin Pulse archive
30-day downloads
Rolling 30-day volume · peaks are release surges
4.4K
now · peak 6.9K
Directory rank vs rivals
wp.org popularity rank over time · higher is better · when a rival's line climbs above yours, they've overtaken you
Rating trend
Star average over time · dips mark rough releases
Update activity
How busy the existing users are, measured as downloads in the last 30 days for every 1,000 active sites. A spike means a new release everyone's pulling; a long, slow decline means an aging user base that updates less.
Release cadence
Actively maintainedHow often this plugin actually ships. A steady rhythm is the maintenance signal a single "last updated" date can't show.
13
releases in the last 12 months
2mo ago
latest release · v30.0.6
46
tagged releases on record
Recent releases
What its installed base runs
via wordpress.orgShare of active installs on each version of this plugin. Green is the current release; a big slice on older versions is a user base that has stopped updating.
Estimated active installs
The public count shows “1K+”. Our estimate pins where the real number sits.
Refined from the date this plugin crossed into its current band.
Install history · since 2015-09-08 · 1,440 observations
Estimated value
What this plugin might earn a year, and what it might sell for. Modeled from public signals; we don't see anyone's books.
Est. annual revenue
Est. acquisition value
A small install base leaves thin data to model from. The range spans more than 10x because wp.org publishes install counts as broad bands, and conversion and price compound on top. Read the midpoint as an order of magnitude, not a valuation.
How we estimate this
Assumptions
- Free → paid conversion. 0.5%–2% of active installs pay for the pro tier. Typical for freemium WordPress plugins; the real rate varies a lot by product.
- Annual price per customer. $49–$129 a year, typical for WordPress plugins rather than this plugin's own pricing.
- Acquisition multiple. 2.5x–4.5x annual revenue, the going range for small WordPress-plugin businesses, stretched a little because downloads are growing.
- Install base. 1K–2K active installs, from our install estimate (wp.org only publishes the floor).
Inputs
- Active installs
- 1K–2K
- Category
- Uncategorized
- Pro tier
- detected (description mentions a Pro or Premium version)
- Download trend
- growing (30d downloads up vs prior 30d)
- Reviews
- 89
- Last updated
- 3 days ago
Revenue is installs × conversion × price; value is revenue × a typical acquisition multiple. Every factor is an assumption band, so the output is a wide range on purpose. If you're buying or selling, treat this as a starting point for due diligence.
Details
Recent reviews
All reviews on wp.org ↗- ★★★★★ petmedia2mo ago
Ich habe verschiedene Plugins getestet und mich für Contest Gallery Pro entschieden. Es ist anfangs etwas viel Umfang, und man benötigt Einarbeitungszeit. Für mich hat es sogar zu viele Funktionen, aber manche können das sicher gut gebrauchen. Der Support ist super schnell und freundlich.
Read on wp.org ↗ - ★★★★★ slpavi20262mo ago
I have been organising an annual photography competition for three years. After considering various options, I decided to purchase a licence for Contest Gallery. As the competition organiser, I need a reliable and versatile platform for submitting photographs and generating galleries so that they can be voted on by the public and assessed by a jury. Now that I’ve got to grips with the plugin, it meets all my needs with ease, despite the complexity of having to manage a high volume of participants. Whenever I’ve had any doubts, I’ve always been able to count on Wasily Strecker’s support, who has quickly resolved all my queries. I couldn’t be happier with this platform for managing the competition, and I’ve always recommended it. Hace tres años que organizo un concurso fotográfico anual. Después de analizar distintas opciones, decidí adquirir una licencia de Contesto Gallery. Como gestor del concurso necesito una plataforma fiable y versátil para enviar las fotografías, y generar galerías para que puedan ser votadas por el público y para poder ser evaluadas por un jurado. Una vez familiarizado con el plugin, cubre todas mis necesidades de manera sencilla, a pesar de la complejidad de tener que gestionar un volumen alto de participantes. En caso de duda, siempre he contado con el soporte de Wasily Strecker, que ha resuelto todas mis dudas rápidamente. No puedo estar más satisfecho con esta plataforma para gestionar el concurso, y la he recomendado siempre.
Read on wp.org ↗ - ★★★★★ webportal10mo ago
The backend UI takes some time to figure out, but once you’ve figured it out, you’ll find that the plugin can do wonders. So, be prepared to go through a steep learning curve. It’s worth the journey.After sale service is good so if there’s anything you are not sure of, the developer is glad to help via email.Kudos to the developer for creating this plugin.
Read on wp.org ↗ - ★★★★★ PigeonLady1.6y ago
Excellent Plugin! The install directions are very well written and easy to follow. This is an awesome program with everything you could possibly want.
Read on wp.org ↗ - ★★★★★ pompousjemus1.6y ago
Purchased the PRO version of this plugin and have found it to be exactly what I was looking for. There is nothing out there like it! The backend is extensive and after about 15 minutes of playing around with it, I was able to create and customize the look, feel and function to exactly what I wanted. In addition, the support was amazing when needed. Very quick and efficient. The creator also updates the plugin often which I love. Always improving it! Would highly recommend!
Read on wp.org ↗ - ★★★★★ vszilu1.7y ago
Lot of very good futures with tons of option, BUT: The UI is terrible at the back- and front end too:– design comes from ages of Netscape Navigator– incredible long options pages without tabs– can’t manage default settings– in the free version can’t hide pro options, what’s have very frustrating green backgroundI spent hours for testing, but I can’t find setting of upload qty limitation – maybe thanks for the ui.This plugin need deep knowledge, but the documentation is very-very pure.This plugin is very potent, but in this form useless for our photoclub.Sorry. We will not buy the pro (and not use the free too).
Read on wp.org ↗ - ★★★★★ ikarel1.8y ago
I started this year with the second Rigid Inflatable Boat Photo Contest based on the plugin. The reasons are: Adequate after sales support: fast response and always correct solutions. Client-centered The jury members find it easy to vote and comment. A few remarks: As an admin the UI needs some getting used to. There are many ways to sort but I would really like to sort alphabetically as well. The search function needs some attention, it can be more accurate. Overall I’ve searched for plugins to have a competition on my website and this one ticks all the boxes for me. Congrats to the developers and the helpdesk.
Read on wp.org ↗ - ★★★★★ akhaira07121.9y ago
Using plugin for media voting contest and it has been working great. Support is very responsive. I would recommend this plugin.
Read on wp.org ↗
Known vulnerabilities
via Wordfence Intelligence64 disclosed vulnerabilities on record for this plugin, all fixed in the current version. Sites on older versions stay exposed until they update.
- 2026-08-19 CVE-2026-61986 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 30.0.5 Patched in 30.0.6
- 2026-08-14 CVE-2026-16586 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 30.0.7 Patched in 31.0.0
- 2026-07-27 CVE-2026-65447 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 30.0.6 Patched in 30.0.7
- Medium · 4.3 Contest Gallery <= 30.0.6 - Missing Authorization ↗
- Medium · 4.3 Contest Gallery <= 30.0.6 - Missing Authorization ↗
- 2026-06-26 CVE-2026-57662 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 30.0.0 Patched in 30.0.1
- 2026-05-18 CVE-2026-8912 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 28.1.6 Patched in 28.1.7
- 2026-04-29 CVE-2026-42656 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 28.1.6 Patched in 29.0.0
- 2026-04-29 CVE-2026-42660 Exposure of Sensitive Information to an Unauthorized Actor Affects <= 28.1.7 Patched in 29.0.0
- 2026-04-21 CVE-2026-40771 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 28.1.6 Patched in 28.1.7
- 2026-03-10 CVE-2026-24964 Server-Side Request Forgery (SSRF) Affects <= 28.1.2.1 Patched in 28.1.2.2
- 2026-03-02 CVE-2026-3180 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 28.1.4 Patched in 28.1.5
- Medium · 4.3 Contest Gallery <= 28.1.1 - Missing Authorization ↗
- Medium · 5.3 Contest Gallery <= 28.0.2 - Missing Authorization ↗
- Medium · 4.3 Contest Gallery – Upload, Vote & Sell with PayPal and Stripe <= 27.0.3 - Unauthenticated CSV Injection ↗2025-10-10 CVE-2025-11254 Improper Neutralization of Formula Elements in a CSV File Affects <= 27.0.3 Patched in 28.0.0
- 2025-10-03 CVE-2025-10383 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 27.0.2 Patched in 27.0.3
- 2025-07-31 CVE-2025-7725 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 26.1.0 Patched in 26.1.1
- 2025-07-11 CVE-2025-48291 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 26.0.6 Patched in 26.0.7
- 2025-07-10 CVE-2025-6716 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 26.0.8 Patched in 26.0.9
- Medium · 6.4 Contest Gallery <= 26.0.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via id Parameter ↗2025-05-07 CVE-2025-3862 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 26.0.6 Patched in 26.0.7
- 2025-02-27 CVE-2025-1513 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 26.0.0.1 Patched in 26.0.1
- 2025-01-31 CVE-2025-22693 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 25.1.0 Patched in 25.1.2
- 2024-12-30 CVE-2024-56237 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 24.0.3 Patched in 24.0.4
- Critical · 9.8 Contest Gallery <= 24.0.7 - Unauthenticated Arbitrary Password Reset to Privilege Escalation/Account Takeover ↗2024-11-27 CVE-2024-11103 Weak Password Recovery Mechanism for Forgotten Password Affects <= 24.0.7 Patched in 24.0.8
- 2024-11-04 CVE-2024-10687 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 24.0.3 Patched in 24.0.4
- 2024-08-16 CVE-2024-43283 Exposure of Sensitive Information to an Unauthorized Actor Affects <= 23.1.2 Patched in 23.1.3
- 2024-07-24 CVE-2024-39631 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 23.1.2 Patched in 23.1.3
- 2024-03-28 CVE-2024-30428 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 21.3.5 Patched in 21.3.6
- Critical · 9.9 Photos and Files Contest Gallery <= 21.3.2 - Authenticated (Contributor+) SQL Injection ↗2024-03-26 CVE-2024-30238 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 21.3.2 Patched in 21.3.2.1
- Critical · 9.9 Photos and Files Contest Gallery <= 21.3.4 - Authenticated (Contributor+) SQL Injection ↗2024-03-26 CVE-2024-30236 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 21.3.4 Patched in 21.3.5
- 2024-02-14 CVE-2024-1487 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 21.3.0 Patched in 21.3.1
- 2024-01-09 Cross-Site Request Forgery (CSRF) Affects <= 21.2.8.4 Patched in 21.2.9
- 2023-10-10 CVE-2023-5307 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects < 21.2.8.1 Patched in 21.2.8.1
- 2023-03-27 CVE-2023-28784 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 21.1.2 Patched in 21.1.2.1
- 2022-12-05 CVE-2022-4158 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.4.1 Patched in 19.1.5
- 2022-12-05 CVE-2022-4156 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.5 Patched in 19.1.5.1
- 2022-12-05 CVE-2022-4157 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.4.1 Patched in 19.1.5
- 2022-12-05 CVE-2022-4155 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.4.1 Patched in 19.1.5
- High · 7.5 Contest Gallery <= 19.1.4.1 - Authenticated (Author+) SQL Injection via cg_multiple_files_for_post ↗2022-12-05 CVE-2022-4164 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.4.1 Patched in 19.1.5
- 2022-12-05 CVE-2022-4160 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.4.1 Patched in 19.1.5
- 2022-12-05 CVE-2022-4161 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.4.1 Patched in 19.1.5
- 2022-12-05 CVE-2022-4152 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.4.1 Patched in 19.1.5
- 2022-12-05 CVE-2022-4165 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.4.1 Patched in 19.1.5
- 2022-12-05 CVE-2022-4162 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.4.1 Patched in 19.1.5
- 2022-12-05 CVE-2022-4159 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.5 Patched in 19.1.5.1
- 2022-12-05 CVE-2022-4153 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.5 Patched in 19.1.5.1
- 2022-12-05 CVE-2022-4150 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.5 Patched in 19.1.5.1
- 2022-12-05 CVE-2022-4166 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.4.1 Patched in 19.1.5
- 2022-11-29 CVE-2022-4151 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 19.1.4.1 Patched in 19.1.5
- 2022-11-29 CVE-2022-4163 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 19.1.4.1 Patched in 19.1.5
- Medium · 6.1 Contest Gallery <= 13.1.0.9 - Cross-Site Scripting ↗2022-11-23 CVE-2022-45848 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 13.1.0.9 Patched in 14.0.0
- 2022-08-09 CVE-2022-36394 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 17.0.4 Patched in 17.0.5
- High · 7.2 Contest Gallery – Files Upload and Contest Plugin for WordPress <= 17.0.4 - Admin+ SQL Injection ↗2022-06-01 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 17.0.4 Patched in 17.0.5
- 2022-04-13 CVE-2021-24915 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 13.1.0.5 Patched in 13.1.0.6
- 2021-12-20 CVE-2022-27853 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 13.1.0.9 Patched in 14.0.0
- 2021-11-01 Exposure of Sensitive Information to an Unauthorized Actor Affects < 13.1.0.7 Patched in 13.1.0.7
Vulnerability records provided by Wordfence Intelligence. Copyright 2012-2026 Defiant Inc. License and terms.
CVE records: Copyright 1999-2026 The MITRE Corporation. CVE terms of use.
Behavioral tests
via WP HiveAutomated install-time checks, tested on PHP 8.1.12 · WP 7.0.1
Languages
via translate.wordpress.orgTranslated into 21 languages, 0 at 90% or more
Growth timeline
Install-tier crossings we have observed, and how long each tier took to outgrow
- 2026-07-30 900+ → 1K+ up after 6 days in tier
- 2026-07-24 1K+ → 900+ down after 24 days in tier
- 2026-06-30 900+ → 1K+ up after 2 days in tier
- 2026-06-28 1K+ → 900+ down after 30 days in tier
- 2026-05-29 900+ → 1K+ up after 2 days in tier
- 2026-05-27 1K+ → 900+ down after 1 days in tier
- 2026-05-26 900+ → 1K+ up after 2 days in tier
- 2026-05-24 1K+ → 900+ down after 5 days in tier
Competes with
The plugins that solve the same job, ranked by shared tags then reach, closest match first. The letter on the right is each plugin's health grade (A best, F worst).
-
SweepWidget – Giveaway, Contest, Sweepstakes, Competition & Photo Contest Plugin 200+ installs · 4.1★ · 3 shared tags A -
ePoll – Contest Poll Survey & Voting 1K+ installs · 3.9★ · 2 shared tags B -
WP Voting Contest Lite 400+ installs · 3.4★ · 2 shared tags B -
Simple Giveaways – Grow your business, email lists and traffic with contests 400+ installs · 4.3★ · 2 shared tags A
-
Tribulant Gallery Voting 300+ installs · 4.0★ · 2 shared tags C -
Photo Contest | Competition | Video Contest 300+ installs · 4.3★ · 2 shared tags B
Embed this report card
Drop a live Pulse card for Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe into a readme, a review or a deck. It updates itself.
<iframe src="https://plugins.wpmayor.com/embed/contest-gallery" width="480" height="300" style="border:0" loading="lazy" title="Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe — Plugin Pulse"></iframe> Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe: 1K+ active installs, 4.4★ (89 reviews). Plugin Pulse (WP Mayor), as of 2026-08-29. https://plugins.wpmayor.com/plugin/contest-gallery