CVE-2017-17774: Piwigo

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

admin/configuration.php in Piwigo 2.9.2 has CSRF.

Affected products

  • Piwigo Piwigo: version 2.9.2 only

Published 2017-12-20. Last modified 2026-06-17.