Arbitrary Code Execution in PbootCMS by PbootCMS Vendor
CVE-2026-67960
9.8CRITICAL
What is CVE-2026-67960?
A security flaw in PbootCMS version 3.2.15 enables attackers to execute arbitrary code through several critical components, including MemberController.php, UserController.php, CommentController.php, ContentController.php, and helper.php. This vulnerability poses a significant risk, as it could allow unauthorized access and control over affected systems, leading to potential data breaches or unauthorized operations.
