CVE-2014-8941: Piwigo Lexiglot

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Lexiglot through 2014-11-20 allows SQL injection via an admin.php?page=users&from_id= or admin.php?page=history&limit= URI.

Affected products

  • Piwigo Lexiglot: up to and including 2014-11-20

Published 2020-06-01. Last modified 2026-06-17.