Skip to content

GHSA lookup

GHSA-289F-FQ7W-6Q2W

Pruva has a verified reproduction for GHSA-289F-FQ7W-6Q2W: phpMyFAQ: unauthenticated SQL injection via User-Agent header in captcha API. The canonical evidence record is REPRO-2026-00144.

REPRO

REPRO-2026-00144

Package

thorsten/phpmyfaq · composer

Severity

CRITICAL

Status

published