CVE-2026-48488EPSS p8.0%
CVE-2026-48488CVE-2026-48488
Description
phpMyFAQ is an open source FAQ web application. Prior to version 4.1.4, attachment passwords are hashed using SHA-1, a cryptographically broken algorithm. SHA-1 has been vulnerable to collision attacks since 2017 (SHAttered). Version 4.1.4 fixes the issue.
Scoring
| EPSS | 0.18% probability of exploitation · percentile 8.0% · 2026-08-03T12:00:16Z |
| Last modified | 2026-07-23 |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.