Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.8
CVE-2026-67960: PbootCMS v.3.2.15 allows code execution
CVE-2026-67960 · published 17 days ago
Summary
An attacker can execute malicious code on your PbootCMS website if they find a vulnerability in it. This is a serious risk because it could allow them to steal data, install malware, or take control of your site. We recommend updating to the latest version of PbootCMS to fix this issue.
Original advisory text
An issue in PbootCMS v.3.2.15 allows an attacker to execute arbitrary code via the MemberController.php, UserController.php, CommentController.php, ContentController.php, and helper.php components
An issue in PbootCMS v.3.2.15 allows an attacker to execute arbitrary code via the MemberController.php, UserController.php, CommentController.php, ContentController.php, and helper.php components
Severity
9.8
Critical
Exploitation
EPSS <1%
Type
CWE-94Code Injection
Timeline
Published17 Aug 2026
Updated3 Sep 2026
First seen17 Aug 2026
Monitor software like this
Free during beta