A vulnerability was identified in DedeCMS 5.7.88. The impacted element is the function dede_htmlspecialchars of the file /plus/flink.php. The manipulation of the argument msg leads to sql injection. The attack may be initiated remotely. The exploit is publicly available and might be used.
References
Configurations
No configuration.
History
03 Jun 2026, 16:16
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://vuldb.com/submit/829414 - |
02 Jun 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-02 20:16
Updated : 2026-06-04 14:56
NVD link : CVE-2026-10607
Mitre link : CVE-2026-10607
CVE.ORG link : CVE-2026-10607
JSON object : View
Products Affected
No product.
