CVE-2020-19217: Piwigo

High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.

SQL Injection vulnerability in admin/batch_manager.php in piwigo v2.9.5, via the filter_category parameter to admin.php?page=batch_manager.

Affected products

  • Piwigo Piwigo: version 2.9.5 only

Published 2022-05-06. Last modified 2026-06-17.