SQL Injection Vulnerability in PHP Jabbers PHP Poll Script
CVE-2026-46593
8.6HIGH
What is CVE-2026-46593?
A critical SQL injection flaw has been discovered in the PHP Jabbers PHP Poll Script, which allows attackers to exploit the pjAdminPolls.controller.php endpoint. This vulnerability arises from improper handling of user inputs, enabling authenticated users to execute unauthorized SQL queries. Such attacks can compromise database integrity and lead to unauthorized data access. The issue was addressed in the updated version 4.1 of the software, underscoring the importance of using the latest versions to ensure security.
Affected Version(s)
PHP Poll Script 0 < 4.1
