Description
Piwigo 13.6.0 is vulnerable to SQL Injection via in the "profile" function.
Remediation
References
Related Vulnerabilities
WordPress Plugin 404 to 301-Redirect, Log and Notify 404 Errors Security Bypass (3.0.1)
WordPress Plugin SoundCloud Is Gold 'width' Parameter Cross-Site Scripting (2.1)
WordPress Plugin BuddyPress Customer.io Analytics Integration Cross-Site Request Forgery (1.1.6)
WordPress Plugin User Control SQL Injection (2.1.0)
WordPress Plugin Hustle-Pop-Ups, Slide-ins and Email Opt-ins CSV Injection (6.0.7)