Description Piwigo v12.2.0 was discovered to contain SQL injection vulnerability via the Search function. Remediation References CVE-2022-32297 Related Vulnerabilities MediaWiki CVE-2023-36674 Vulnerability (CVE-2023-36674) Caddy Web Server Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-19148) osTicket Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2022-32074) MySQL CVE-2021-2036 Vulnerability (CVE-2021-2036) Select2 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-10744) Severity High Classification CVE-2022-32297 CWE-138 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H Tags Missing Update Known Vulnerabilities