Skip to main content
Loading…
    CVE-2026-46360 — phpMyFAQ before 4.1.2 contains a stored cross-site scripting vulnerability in SvgSanitizer::decodeAllEntities() that limits recursive entity decoding to 5 iterations, allowing attackers to bypass sani — CVE Database · The Intelligence Room