{"schema_version":1,"title":"thorsten/phpmyfaq (Packagist) vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 34 vulnerabilities in thorsten/phpmyfaq (Packagist): 4 in the last 7 days and 7 in the last 90 days, 4 of them critical and 0 exploited in the wild. The most recent, CVE-2026-56738, was published on 24 September 2026.","url":"https://junglewise.ai/threats/technologies/thorsten-phpmyfaq","json_url":"https://junglewise.ai/threats/technologies/thorsten-phpmyfaq.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/thorsten-phpmyfaq","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":14,"all_time":34,"critical":4,"exploited":0,"last_7_days":4,"last_30_days":4,"last_90_days":7,"last_365_days":34},"latest":[{"cve":"CVE-2026-56738","cvss":6.5,"epss":0.0026,"slug":"cve-2026-56738-phpmyfaq-sql-injection-in-stopwords-add","title":"phpMyFAQ is an open source FAQ web application. The `StopWords::add()` method inversions prior to 4.1.6 builds a SQL `INSERT` statement usin","severity":"high","exploited":false,"published_at":"2026-09-24T17:17:04.89+00:00","url":"https://junglewise.ai/threats/cve-2026-56738-phpmyfaq-sql-injection-in-stopwords-add"},{"cve":"CVE-2026-47132","cvss":5.4,"epss":0.0025,"slug":"cve-2026-47132-phpmyfaq-sql-like-wildcard-injection-in-chat-user-search","title":"phpMyFAQ is an open source FAQ web application. Prior to version 4.2.0-alpha, an authenticated SQL LIKE wildcard injection vulnerability in","severity":"medium","exploited":false,"published_at":"2026-09-24T17:17:04.723+00:00","url":"https://junglewise.ai/threats/cve-2026-47132-phpmyfaq-sql-like-wildcard-injection-in-chat-user-search"},{"cve":"CVE-2026-56737","cvss":8.1,"epss":0.004,"slug":"cve-2026-56737-phpmyfaq-two-factor-authentication-password-bypass","title":"phpMyFAQ is an open source FAQ web application. Versions 3.2.0 through 4.1.5 contain an authentication bypass in its public two-factor authe","severity":"high","exploited":false,"published_at":"2026-09-24T16:17:07.637+00:00","url":"https://junglewise.ai/threats/cve-2026-56737-phpmyfaq-two-factor-authentication-password-bypass"},{"cve":"CVE-2026-56736","cvss":8.2,"epss":0.0024,"slug":"cve-2026-56736-phpmyfaq-stored-xss-in-admin-faq-editor-via-html-entity-bypass","title":"phpMyFAQ is an open source FAQ web application. A stored cross-site scripting (XSS) vulnerability in versions prior to 4.2.0-alpha allows an","severity":"high","exploited":false,"published_at":"2026-09-24T15:17:24.1+00:00","url":"https://junglewise.ai/threats/cve-2026-56736-phpmyfaq-stored-xss-in-admin-faq-editor-via-html-entity-bypass"},{"cvss":8.8,"slug":"phpmyfaq-privilege-escalation-in-groupcontroller-updatepermissions-3da5d4fe","title":"phpMyFAQ privilege escalation in GroupController::updatePermissions","severity":"high","exploited":false,"published_at":"2026-08-25T17:32:07+00:00","url":"https://junglewise.ai/threats/phpmyfaq-privilege-escalation-in-groupcontroller-updatepermissions-3da5d4fe"},{"cvss":5.3,"slug":"phpmyfaq-public-api-information-disclosure-in-faq-endpoints-8f0c6c40","title":"phpMyFAQ public API information disclosure in FAQ endpoints","severity":"medium","exploited":false,"published_at":"2026-08-25T17:30:23+00:00","url":"https://junglewise.ai/threats/phpmyfaq-public-api-information-disclosure-in-faq-endpoints-8f0c6c40"},{"cvss":4.9,"slug":"phpmyfaq-path-traversal-in-pdf-export-5f62d0df","title":"phpMyFAQ path traversal in PDF export","severity":"medium","exploited":false,"published_at":"2026-08-25T17:28:56+00:00","url":"https://junglewise.ai/threats/phpmyfaq-path-traversal-in-pdf-export-5f62d0df"},{"cvss":8.1,"slug":"phpmyfaq-privilege-escalation-via-incomplete-fix-in-usercontroller-api-93ecfd60","title":"phpMyFAQ privilege escalation via incomplete fix in UserController API","severity":"high","exploited":false,"published_at":"2026-06-26T21:23:37+00:00","url":"https://junglewise.ai/threats/phpmyfaq-privilege-escalation-via-incomplete-fix-in-usercontroller-api-93ecfd60"},{"cve":"CVE-2026-49205","cvss":6.5,"epss":0.0024,"slug":"cve-2026-49205-phpmyfaq-missing-authorization-in-api-write-endpoints","title":"phpMyFAQ missing authorization in API write endpoints","severity":"medium","exploited":false,"published_at":"2026-06-18T22:16:31.937+00:00","url":"https://junglewise.ai/threats/cve-2026-49205-phpmyfaq-missing-authorization-in-api-write-endpoints"},{"cve":"CVE-2026-48488","cvss":2.7,"epss":0.0018,"slug":"cve-2026-48488-phpmyfaq-weak-cryptographic-hash-for-attachment-passwords","title":"phpMyFAQ weak cryptographic hash for attachment passwords","severity":"low","exploited":false,"published_at":"2026-06-08T16:16:43.227+00:00","url":"https://junglewise.ai/threats/cve-2026-48488-phpmyfaq-weak-cryptographic-hash-for-attachment-passwords"},{"cvss":8.2,"slug":"phpmyfaq-account-takeover-via-weak-password-recovery-mechanism-b9c11aaa","title":"phpMyFAQ account takeover via weak password recovery mechanism","severity":"high","exploited":false,"published_at":"2026-05-20T15:46:55+00:00","url":"https://junglewise.ai/threats/phpmyfaq-account-takeover-via-weak-password-recovery-mechanism-b9c11aaa"},{"cvss":7.5,"slug":"phpmyfaq-auth-bypass-via-default-empty-api-token-430bee97","title":"phpMyFAQ auth bypass via default empty API token","severity":"high","exploited":false,"published_at":"2026-05-20T15:46:42+00:00","url":"https://junglewise.ai/threats/phpmyfaq-auth-bypass-via-default-empty-api-token-430bee97"},{"cvss":8.8,"slug":"phpmyfaq-idor-privilege-escalation-in-admin-api-password-reset-a3677089","title":"phpMyFAQ IDOR privilege escalation in Admin API password reset","severity":"high","exploited":false,"published_at":"2026-05-20T15:46:17+00:00","url":"https://junglewise.ai/threats/phpmyfaq-idor-privilege-escalation-in-admin-api-password-reset-a3677089"},{"cvss":8.2,"slug":"phpmyfaq-weak-password-recovery-in-unauthorizedusercontroller-fb01efd0","title":"phpMyFAQ weak password recovery in UnauthorizedUserController","severity":"high","exploited":false,"published_at":"2026-05-20T15:45:53+00:00","url":"https://junglewise.ai/threats/phpmyfaq-weak-password-recovery-in-unauthorizedusercontroller-fb01efd0"},{"cvss":4.3,"slug":"phpmyfaq-missing-authorization-in-admin-api-configuration-endpoints-89d3b47f","title":"phpMyFAQ missing authorization in Admin API configuration endpoints","severity":"medium","exploited":false,"published_at":"2026-05-15T21:31:32+00:00","url":"https://junglewise.ai/threats/phpmyfaq-missing-authorization-in-admin-api-configuration-endpoints-89d3b47f"},{"cvss":6.5,"slug":"phpmyfaq-authorization-bypass-in-abstractadministrationcontroller-4d6c5440","title":"phpMyFAQ authorization bypass in AbstractAdministrationController","severity":"medium","exploited":false,"published_at":"2026-05-15T21:31:32+00:00","url":"https://junglewise.ai/threats/phpmyfaq-authorization-bypass-in-abstractadministrationcontroller-4d6c5440"},{"cvss":7.5,"slug":"phpmyfaq-sql-injection-in-currentuser-settokendata-3dcbb4d3","title":"phpMyFAQ SQL injection in CurrentUser::setTokenData","severity":"high","exploited":false,"published_at":"2026-05-15T21:31:32+00:00","url":"https://junglewise.ai/threats/phpmyfaq-sql-injection-in-currentuser-settokendata-3dcbb4d3"},{"cvss":9.8,"slug":"phpmyfaq-sql-injection-in-builtincaptcha-via-user-agent-header-23e44a8e","title":"phpMyFAQ SQL injection in BuiltinCaptcha via User-Agent header","severity":"critical","exploited":false,"published_at":"2026-05-15T21:31:32+00:00","url":"https://junglewise.ai/threats/phpmyfaq-sql-injection-in-builtincaptcha-via-user-agent-header-23e44a8e"},{"cvss":9.1,"slug":"phpmyfaq-2fa-bypass-via-unauthenticated-brute-force-in-admin-check-7a3aa01c","title":"phpMyFAQ 2FA bypass via unauthenticated brute-force in admin check endpoint","severity":"critical","exploited":false,"published_at":"2026-05-15T21:31:32+00:00","url":"https://junglewise.ai/threats/phpmyfaq-2fa-bypass-via-unauthenticated-brute-force-in-admin-check-7a3aa01c"},{"cvss":7.5,"slug":"phpmyfaq-information-disclosure-via-solution-id-permission-bypass-f1d9aedf","title":"phpMyFAQ information disclosure via solution ID permission bypass","severity":"high","exploited":false,"published_at":"2026-05-15T21:31:32+00:00","url":"https://junglewise.ai/threats/phpmyfaq-information-disclosure-via-solution-id-permission-bypass-f1d9aedf"},{"cvss":6.9,"slug":"phpmyfaq-stored-xss-in-search-result-rendering-9f7f3087","title":"phpMyFAQ stored XSS in search result rendering","severity":"medium","exploited":false,"published_at":"2026-05-15T21:31:32+00:00","url":"https://junglewise.ai/threats/phpmyfaq-stored-xss-in-search-result-rendering-9f7f3087"},{"cve":"CVE-2026-46367","cvss":7.6,"epss":0.0001,"slug":"cve-2026-46367-phpmyfaq-stored-xss-in-utils-parseurl-via-comments","title":"phpMyFAQ stored XSS in Utils::parseUrl via comments","severity":"high","exploited":false,"published_at":"2026-05-15T19:17:04.087+00:00","url":"https://junglewise.ai/threats/cve-2026-46367-phpmyfaq-stored-xss-in-utils-parseurl-via-comments"},{"cve":"CVE-2026-46366","cvss":7.5,"epss":0.0008,"slug":"cve-2026-46366-phpmyfaq-information-disclosure-in-getidfromsolutionid","title":"phpMyFAQ information disclosure in getIdFromSolutionId","severity":"high","exploited":false,"published_at":"2026-05-15T19:17:03.973+00:00","url":"https://junglewise.ai/threats/cve-2026-46366-phpmyfaq-information-disclosure-in-getidfromsolutionid"},{"cve":"CVE-2026-46365","cvss":5.4,"epss":0.0004,"slug":"cve-2026-46365-phpmyfaq-missing-authorization-in-tag-deletion-api","title":"phpMyFAQ missing authorization in tag deletion API","severity":"medium","exploited":false,"published_at":"2026-05-15T19:17:03.86+00:00","url":"https://junglewise.ai/threats/cve-2026-46365-phpmyfaq-missing-authorization-in-tag-deletion-api"},{"cve":"CVE-2026-46364","cvss":9.8,"epss":0.0007,"slug":"cve-2026-46364-phpmyfaq-sql-injection-in-builtincaptcha-via-user-agent-header","title":"phpMyFAQ SQL injection in BuiltinCaptcha via User-Agent header","severity":"critical","exploited":false,"published_at":"2026-05-15T19:17:03.75+00:00","url":"https://junglewise.ai/threats/cve-2026-46364-phpmyfaq-sql-injection-in-builtincaptcha-via-user-agent-header"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":3},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":4}],"related":[{"name":"getgrav/grav (Packagist)","slug":"getgrav-grav","vulnerabilities":63,"url":"https://junglewise.ai/threats/technologies/getgrav-grav"},{"name":"wwbn/avideo (Packagist)","slug":"wwbn-avideo","vulnerabilities":58,"url":"https://junglewise.ai/threats/technologies/wwbn-avideo"},{"name":"concrete5/concrete5 (Packagist)","slug":"concrete5-concrete5","vulnerabilities":46,"url":"https://junglewise.ai/threats/technologies/concrete5-concrete5"},{"name":"snipe/snipe-it (Packagist)","slug":"snipe-snipe-it","vulnerabilities":39,"url":"https://junglewise.ai/threats/technologies/snipe-snipe-it"},{"name":"phpmyfaq/phpmyfaq (Packagist)","slug":"phpmyfaq-phpmyfaq","vulnerabilities":33,"url":"https://junglewise.ai/threats/technologies/phpmyfaq-phpmyfaq"},{"name":"craftcms/cms (Packagist)","slug":"craftcms-cms","vulnerabilities":27,"url":"https://junglewise.ai/threats/technologies/craftcms-cms"},{"name":"mantisbt/mantisbt (Packagist)","slug":"mantisbt-mantisbt","vulnerabilities":26,"url":"https://junglewise.ai/threats/technologies/mantisbt-mantisbt"},{"name":"kimai/kimai (Packagist)","slug":"kimai-kimai","vulnerabilities":22,"url":"https://junglewise.ai/threats/technologies/kimai-kimai"},{"name":"froxlor/froxlor (Packagist)","slug":"froxlor-froxlor","vulnerabilities":18,"url":"https://junglewise.ai/threats/technologies/froxlor-froxlor"},{"name":"yeswiki/yeswiki (Packagist)","slug":"yeswiki-yeswiki","vulnerabilities":15,"url":"https://junglewise.ai/threats/technologies/yeswiki-yeswiki"},{"name":"twig/twig (Packagist)","slug":"twig-twig","vulnerabilities":14,"url":"https://junglewise.ai/threats/technologies/twig-twig"},{"name":"shopper/framework (Packagist)","slug":"shopper-framework","vulnerabilities":13,"url":"https://junglewise.ai/threats/technologies/shopper-framework"}],"technology":{"hub":true,"name":"thorsten/phpmyfaq (Packagist)","slug":"thorsten-phpmyfaq","vendor":{"name":"Packagist","slug":"packagist","url":"https://junglewise.ai/threats/vendors/packagist"},"aliases":[],"homepage":"https://www.phpmyfaq.de/","repo_url":"https://github.com/thorsten/phpmyfaq","description":"An open-source multilingual FAQ software package written in PHP.","url":"https://junglewise.ai/threats/technologies/thorsten-phpmyfaq"},"most_severe":[{"cve":"CVE-2026-46364","cvss":9.8,"epss":0.0007,"slug":"cve-2026-46364-phpmyfaq-sql-injection-in-builtincaptcha-via-user-agent-header","title":"phpMyFAQ SQL injection in BuiltinCaptcha via User-Agent header","severity":"critical","exploited":false,"published_at":"2026-05-15T19:17:03.75+00:00","url":"https://junglewise.ai/threats/cve-2026-46364-phpmyfaq-sql-injection-in-builtincaptcha-via-user-agent-header"},{"cvss":9.8,"slug":"phpmyfaq-sql-injection-in-builtincaptcha-via-user-agent-header-23e44a8e","title":"phpMyFAQ SQL injection in BuiltinCaptcha via User-Agent header","severity":"critical","exploited":false,"published_at":"2026-05-15T21:31:32+00:00","url":"https://junglewise.ai/threats/phpmyfaq-sql-injection-in-builtincaptcha-via-user-agent-header-23e44a8e"},{"cve":"CVE-2026-45010","cvss":9.1,"epss":0.0015,"slug":"cve-2026-45010-thorsten-phpmyfaq-2fa-bypass-via-brute-force-in-admin-check","title":"thorsten phpMyFAQ 2FA bypass via brute-force in /admin/check","severity":"critical","exploited":false,"published_at":"2026-05-15T19:17:01.45+00:00","url":"https://junglewise.ai/threats/cve-2026-45010-thorsten-phpmyfaq-2fa-bypass-via-brute-force-in-admin-check"},{"cvss":9.1,"slug":"phpmyfaq-2fa-bypass-via-unauthenticated-brute-force-in-admin-check-7a3aa01c","title":"phpMyFAQ 2FA bypass via unauthenticated brute-force in admin check endpoint","severity":"critical","exploited":false,"published_at":"2026-05-15T21:31:32+00:00","url":"https://junglewise.ai/threats/phpmyfaq-2fa-bypass-via-unauthenticated-brute-force-in-admin-check-7a3aa01c"},{"cvss":8.8,"slug":"phpmyfaq-privilege-escalation-in-groupcontroller-updatepermissions-3da5d4fe","title":"phpMyFAQ privilege escalation in GroupController::updatePermissions","severity":"high","exploited":false,"published_at":"2026-08-25T17:32:07+00:00","url":"https://junglewise.ai/threats/phpmyfaq-privilege-escalation-in-groupcontroller-updatepermissions-3da5d4fe"},{"cvss":8.8,"slug":"phpmyfaq-idor-privilege-escalation-in-admin-api-password-reset-a3677089","title":"phpMyFAQ IDOR privilege escalation in Admin API password reset","severity":"high","exploited":false,"published_at":"2026-05-20T15:46:17+00:00","url":"https://junglewise.ai/threats/phpmyfaq-idor-privilege-escalation-in-admin-api-password-reset-a3677089"},{"cve":"CVE-2026-56736","cvss":8.2,"epss":0.0024,"slug":"cve-2026-56736-phpmyfaq-stored-xss-in-admin-faq-editor-via-html-entity-bypass","title":"phpMyFAQ is an open source FAQ web application. A stored cross-site scripting (XSS) vulnerability in versions prior to 4.2.0-alpha allows an","severity":"high","exploited":false,"published_at":"2026-09-24T15:17:24.1+00:00","url":"https://junglewise.ai/threats/cve-2026-56736-phpmyfaq-stored-xss-in-admin-faq-editor-via-html-entity-bypass"},{"cvss":8.2,"slug":"phpmyfaq-account-takeover-via-weak-password-recovery-mechanism-b9c11aaa","title":"phpMyFAQ account takeover via weak password recovery mechanism","severity":"high","exploited":false,"published_at":"2026-05-20T15:46:55+00:00","url":"https://junglewise.ai/threats/phpmyfaq-account-takeover-via-weak-password-recovery-mechanism-b9c11aaa"},{"cvss":8.2,"slug":"phpmyfaq-weak-password-recovery-in-unauthorizedusercontroller-fb01efd0","title":"phpMyFAQ weak password recovery in UnauthorizedUserController","severity":"high","exploited":false,"published_at":"2026-05-20T15:45:53+00:00","url":"https://junglewise.ai/threats/phpmyfaq-weak-password-recovery-in-unauthorizedusercontroller-fb01efd0"},{"cve":"CVE-2026-56737","cvss":8.1,"epss":0.004,"slug":"cve-2026-56737-phpmyfaq-two-factor-authentication-password-bypass","title":"phpMyFAQ is an open source FAQ web application. Versions 3.2.0 through 4.1.5 contain an authentication bypass in its public two-factor authe","severity":"high","exploited":false,"published_at":"2026-09-24T16:17:07.637+00:00","url":"https://junglewise.ai/threats/cve-2026-56737-phpmyfaq-two-factor-authentication-password-bypass"}],"generated_at":"2026-09-26T10:22:00.132594+00:00"}