CVE-2026-42324

CVE-2026-42324 published: Piwigo is a full featured open source photo gallery application for the web. Prior to 16.4.0, admin/element_set_ranks.php stores administrator-controlled image_order[] values without enforcing the existing sort-field whitelist. The stored album image_order ...

View full NVD advisory → ← Back to CVE watch