SQL Injection Vulnerability in YesWiki Affects User Data Security
CVE-2026-104457

8.8HIGH

Key Information:

Vendor

Yeswiki

Status
Vendor
CVE Published:
2 October 2026

What is CVE-2026-104457?

YesWiki, prior to version 4.6.7, is exposed to a SQL injection flaw due to the mishandling of unescaped filterN attribute tokens in the Bazar filtertags action. This vulnerability allows unauthenticated attackers on default installations to manipulate filtertags markup by introducing a trailing backslash token, resulting in a break in quote parity under MySQL's backslash escaping. Consequently, attackers can exploit this flaw to inject complex UNION subqueries that may enable them to access sensitive information stored in the database, including user credentials and other confidential data.

Affected Version(s)

yeswiki 0 < 4.6.7

yeswiki 4.6.7

References

CVSS V4

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

manus-use
.