SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-46593

HIGH · CVSS 8.6 EPSS 0.30%

Source: NVD + CISA KEV + EPSS · Published 2026-07-31 · Last synced 2026-08-30

CyberRota Analysis

AI-Generated

A SQL injection vulnerability in the PHP Jabbers - PHP Poll Script allows authenticated attackers to manipulate database queries through the `pjAdminPolls.controller.php` endpoint due to improper input handling. This could lead to unauthorized data access or modification, posing a significant risk to the integrity of the application. Organizations using affected versions should prioritize updating to version 4.1 to mitigate potential exploitation.

CVE
CVE-2026-46593
Severity
HIGH
CVSS
8.6
EPSS
0.30%

Original NVD Description

A SQL injection vulnerability has been identified in the PHP Jabbers - PHP Poll Script. Improper neutralization of input provided by user to pjAdminPolls.controller.php endpoint allows an authenticated attacker to perform SQL Injection attacks. This issue was fixed in version 4.1.