{ "id": "CVE-2024-28662", "sourceIdentifier": "cve@mitre.org", "published": "2024-03-13T21:16:01.357", "lastModified": "2024-03-14T12:52:16.723", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ { "lang": "en", "value": "A Cross Site Scripting vulnerability exists in Piwigo before 14.3.0 script because of missing sanitization in create_tag in admin/include/functions.php." }, { "lang": "es", "value": "Existe una vulnerabilidad de Cross Site Scripting en Piwigo anterior a la versi\u00f3n 14.3.0 debido a la falta de sanitizaci\u00f3n en create_tag en admin/include/functions.php." } ], "metrics": {}, "references": [ { "url": "https://github.com/Piwigo/Piwigo/commit/5069610aaeb1da6d96d389651a5ba9b38690c580", "source": "cve@mitre.org" }, { "url": "https://github.com/Piwigo/Piwigo/compare/14.2.0...14.3.0", "source": "cve@mitre.org" }, { "url": "https://github.com/Piwigo/Piwigo/security/advisories/GHSA-8g2g-6f2c-6h7j", "source": "cve@mitre.org" } ] }