First published: Fri Nov 03 2023(Updated: )
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tips and Tricks HQ, Peter Petreski Simple Photo Gallery simple-photo-gallery allows SQL Injection.This issue affects Simple Photo Gallery: from n/a through v1.8.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tipsandtricks-hq Simple Photo Gallery | <=1.8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-47588 is a SQL Injection vulnerability in the Simple Photo Gallery plugin for WordPress.
CVE-2022-47588 has a severity rating of 9.8 (Critical).
CVE-2022-47588 affects Simple Photo Gallery versions up to and including v1.8.1.
CVE-2022-47588 is categorized under CWE-89 (Improper Neutralization of Special Elements used in an SQL Command).
To fix CVE-2022-47588, it is recommended to update Simple Photo Gallery to a version beyond v1.8.1.