SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-73998

HIGH · CVSS 8.5 EPSS 0.34%

Source: NVD + CISA KEV + EPSS · Published 2026-08-20 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

The vulnerability allows for SQL injection in the Subscriber feature of WP w3all phpBB versions up to 3.0.5, potentially enabling attackers to manipulate database queries and gain unauthorized access to sensitive data. Organizations using affected phpBB versions should prioritize patching this vulnerability to mitigate the risk of data breaches and unauthorized system access. Immediate action is recommended for those managing web applications that rely on this software.

CVE
CVE-2026-73998
Severity
HIGH
CVSS
8.5
EPSS
0.34%

Original NVD Description

Subscriber SQL Injection in WP w3all phpBB <= 3.0.5 versions.