
💉 MingSoft MCMS hit by another SQL injection CVE-2026-19355 affects MingSoft MCMS through 3.0.6. The flaw affects /mdiy/form/data/list.do and its handling of form-field data, potentially enabling SQL injection. 🔎 Source: CVE/Vulnerability feed via YANAC. #MCMS #SQLInjection #CVE #CyberSecurity
Post summary
MingSoft MCMS’s CVE‑2026‑19355, a SQL injection flaw in /mdiy/form/data/list.do, has reportedly been exploited, but no PoC, exploit code, or patch is provided in the text.
