cleantalk
Vulnerabilities and Security Researches

Gallery Widget, CVE-2025-28969

CVE, Research URL

CVE-2025-28969

Application

Gallery Widget

Published on
Jul 04, 2025
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in cybio Gallery Widget allows SQL Injection. This issue affects Gallery Widget: from n/a through 1.2.1.
Affected versions
Min -, max 1.2.1.
Status
vulnerable