Home/Product/galette
Product

galette

11 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-58053
< 1.2.0
Galette is a membership management web application for non profit organizations. Prior to version 1.2.0, while updating any existi
9.8CRITICAL
CVE-2025-58052
< 1.2.0
Galette is a membership management web application for non profit organizations. Starting in version 0.9.6 and prior to version 1.
8.1HIGH
CVE-2025-53922
>= 1.1.4 and < 1.2.0
Galette is a membership management web application for non profit organizations. Starting in version 1.1.4 and prior to version 1.
4.9MEDIUM
CVE-2025-48884
< 1.2.0
Galette is a membership management web application for non profit organizations. In versions 1.1.5.2 and below, Galette's Document
6.1MEDIUM
CVE-2025-48076
< 1.2.0
Galette is a membership management web application for non profit organizations. Versions 1.1.5.2 and below allow a user to edit a
5.4MEDIUM
CVE-2024-24761
all versions
Galette is a membership management web application for non profit organizations. Starting in version 1.0.0 and prior to version 1.
7.5HIGH
CVE-2021-41262
< 0.9.6
Galette is a membership management web application built for non profit organizations and released under GPLv3. Versions prior to
8.8HIGH
CVE-2021-41261
< 0.9.6
Galette is a membership management web application built for non profit organizations and released under GPLv3. Versions prior to
8.1HIGH
CVE-2021-41260
< 0.9.6
Galette is a membership management web application built for non profit organizations and released under GPLv3. Versions prior to
8.2HIGH
CVE-2021-21319
< 0.9.5
Galette is a membership management web application geared towards non profit organizations. In versions prior to 0.9.5, malicious
6.8MEDIUM
CVE-2012-2338
all versions
SQL injection vulnerability in includes/picture.class.php in Galette 0.63, 0.63.1, 0.63.2, 0.63.3, and 0.64rc1 allows remote attac
threatengine.sh