
CVE-2026-34973 phpMyFAQ is an open source FAQ web application. Prior to version 4.1.1, the searchCustomPages() method in phpmyfaq/src/phpMyFAQ/Search.php uses real_escape_string() (… https://www.cve.org/CVERecord?id=CVE-2026-34973
Post summary
The text announces CVE-2026-34973 as a vulnerability in phpMyFAQ’s searchCustomPages() method with insufficient escaping, constituting a disclosure without further details on exploitation or patches.
