LOW 2.0 NVD
CVE-2026-82482
A security vulnerability has been detected in coppermine-gallery Coppermine Photo Gallery up to 1.6.28. This affects an unknown function of the file profile.php
A security vulnerability has been detected in coppermine-gallery Coppermine Photo Gallery up to 1.6.28. This affects an unknown function of the file profile.php of the component edit_profile Endpoint. The manipulation of the argument Biography leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used. Upgrading to version 1.6.29 mitigates this issue. Upgrading the affected component is recommended.
References
- https://github.com/Leousum/VulnPoC/blob/main/CPG1.6.x/stored_xss_biography.md
- https://github.com/coppermine-gallery/cpg1.6.x/releases/tag/v1.6.29
- https://vuldb.com/cve/CVE-2026-82482
- https://vuldb.com/submit/888334
- https://vuldb.com/vuln/397032
This low severity vulnerability with a CVSS score of 2.0 was published on 2026-08-30 via NVD.
vulnfeed aggregates 11450 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.