Vulnerabilities > Piwigo > Piwigo > 14.0.0

DATE CVE VULNERABILITY TITLE RISK
2024-01-12 CVE-2023-51790 Cross-site Scripting vulnerability in Piwigo 14.0.0
Cross Site Scripting vulnerability in piwigo v.14.0.0 allows a remote attacker to obtain sensitive information via the lang parameter in the Admin Tools plug-in component.
network
low complexity
piwigo CWE-79
6.1
2023-10-09 CVE-2023-44393 Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Piwigo
Piwigo is an open source photo gallery application.
network
low complexity
piwigo CWE-80
6.1