CVE-2026-82483

A vulnerability was detected in coppermine-gallery Coppermine Photo Gallery up to 1.6.28. This impacts an unknown function of the file db_input.php of the component Hidden Album Update Endpoint. The manipulation results in cross site scripting. The attack can be launched remotely. The exploit is now public and may be used. Upgrading to version 1.6.29 will fix this issue. It is recommended to upgrade the affected component.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-30 08:16

Updated : 2026-08-31 20:56


NVD link : CVE-2026-82483

Mitre link : CVE-2026-82483

CVE.ORG link : CVE-2026-82483


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CWE-94

Improper Control of Generation of Code ('Code Injection')