Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-4cr4-x82x-hwm9: thorsten/phpmyfaq vulnerable to authentication bypass

thorsten/phpmyfaq prior to 3.1.12 is vulnerable to authentication bypass by capture-relay that allows unlimited comments to be sent. This has been fixed in 3.1.12.

ghsa
#git#php#auth

thorsten/phpmyfaq vulnerable to authentication bypass

High severity GitHub Reviewed Published Apr 5, 2023 to the GitHub Advisory Database • Updated Apr 6, 2023

Related news

CVE-2023-1886: Captcha Bypass allows sending unlimited Comments in phpmyfaq

Authentication Bypass by Capture-replay in GitHub repository thorsten/phpmyfaq prior to 3.1.12.