CVE-2023-37152: Online Art Gallery Project Online Art Gallery

Critical severity, CVSS 9.8. EPSS: 2% chance of exploitation in the next 30 days.

Projectworlds Online Art Gallery Project 1.0 allows unauthenticated users to perform arbitrary file uploads via the adminHome.php page. Note: This has been disputed as not a valid vulnerability.

Affected products

Published 2023-07-10. Last modified 2026-06-17.