A Cross Site Scripting vulnerability exists in Piwigo before 14.3.0 script because of missing sanitization in create_tag in admin/include/functions.php.
Metrics
Affected Vendors & Products
References
History
Fri, 23 May 2025 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Piwigo
Piwigo piwigo |
|
CPEs | cpe:2.3:a:piwigo:piwigo:14.2.0:*:*:*:*:*:*:* | |
Vendors & Products |
Piwigo
Piwigo piwigo |
Wed, 13 Nov 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-79 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published: 2024-03-13T00:00:00
Updated: 2024-11-13T16:08:01.089Z
Reserved: 2024-03-08T00:00:00
Link: CVE-2024-28662

Updated: 2024-08-02T00:56:57.914Z

Status : Analyzed
Published: 2024-03-13T21:16:01.357
Modified: 2025-05-23T14:43:43.533
Link: CVE-2024-28662

No data.