phpMyFAQ 是一个开源的 FAQ 网站应用程序。在 4.2.0-alpha 之前的版本中存在一个存储型跨站脚本(XSS)漏洞,该漏洞允许任何未经身份验证的用户(或低权限注册用户)注入任意 JavaScript 代码,当管理员查看或编辑用户提交的 FAQ 条目时,这些脚本会在管理员的浏览器中执行。这会导致会话劫持,进而导致管理员账户被接管。漏洞的存在是因为 函数在 函数已经对 HTML 实体进行过滤后,仍将这些实体转换为可执行的 HTML。此外,管理员模板使用 Twig 的 过滤器渲染内容时,并未对输出进行任何
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-56738 | 8.5 HIGH | phpMyFAQ has SQL Injection in `StopWords::add()` — Unescaped Stop Word Insertion |
| CVE-2026-56737 | 8.1 HIGH | phpMyFAQ's two-factor authentication login bypasses the password factor |
| CVE-2026-47132 | 5.4 MEDIUM | phpMyFAQ: SQL LIKE Wildcard Injection in Chat User Search Allows Authenticated User Enumer |
No comments yet