Description
Cross-site request forgery (CSRF) vulnerability in Piwigo through 2.9.1 allows remote attackers to hijack the authentication of users for requests to unlock albums via a crafted request.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2015-4921 Vulnerability (CVE-2015-4921)
Dolibarr Missing Authorization Vulnerability (CVE-2023-4198)
RubyGems Improper Input Validation Vulnerability (CVE-2015-4020)
WordPress Plugin Catch IDs Security Bypass (2.3)
GlassFish Use of Hard-coded Credentials Vulnerability (CVE-2018-14324)