Description Piwigo v12.2.0 was discovered to contain a SQL injection vulnerability via pwg.users.php. Remediation References CVE-2022-26266 Related Vulnerabilities Zope Web Application Server Other Vulnerability (CVE-2002-0170) WordPress Plugin Customize WordPress Emails and Alerts-Better Notifications for WP Information Disclosure (1.8.6) MySQL CVE-2017-10320 Vulnerability (CVE-2017-10320) Oracle Database Server CVE-2009-1994 Vulnerability (CVE-2009-1994) MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-31551) Severity High Classification CVE-2022-26266 CWE-138 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Tags Missing Update Known Vulnerabilities