Description
Cross Site Scripting (XSS) vulnerability exists in Piwigo 12.x via the pwg_activity function in include/functions.inc.php.
Remediation
References
Related Vulnerabilities
PHP Use After Free Vulnerability (CVE-2016-9138)
WordPress Plugin Relevanssi-A Better Search SQL Injection (3.2)
Liferay Portal Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2024-25143)
Atlassian Jira Server-Side Request Forgery (SSRF) Vulnerability (CVE-2018-13404)
Oracle Application Server CVE-2006-0282 Vulnerability (CVE-2006-0282)