Description Piwigo v14.5.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Edit album function. Remediation References CVE-2024-48311 Related Vulnerabilities Moodle Other Vulnerability (CVE-2007-1429) PHP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-4721) WordPress Plugin Ninja Forms Contact Form-The Drag and Drop Form Builder for WordPress SQL Injection (3.3.21.1) Apache Tomcat Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2007-3382) MySQL CVE-2025-50100 Vulnerability (CVE-2025-50100) Severity High Classification CVE-2024-48311 CWE-352 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Tags Missing Update Known Vulnerabilities