CVE-2026-48488EPSS p18.6%
CVE-2026-48488CVE-2026-48488
Description
phpMyFAQ is an open source FAQ web application. Prior to version 4.1.4, attachment passwords are hashed using SHA-1, a cryptographically broken algorithm. SHA-1 has been vulnerable to collision attacks since 2017 (SHAttered). Version 4.1.4 fixes the issue.
Scoring
| EPSS | 0.28% probability of exploitation · percentile 18.6% · 2026-10-05T12:00:23Z |
| Last modified | 2026-07-23 |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.