
CVE-2026-39963 Serendipity is a PHP-powered weblog engine. In versions 2.6-beta2 and below, the serendipity_setCookie() function in include/functions_config.inc.php uses $_SERVER['… https://www.cve.org/CVERecord?id=CVE-2026-39963
Post summary
The snippet announces CVE-2026-39963, noting an issue in the cookie-handling function of Serendipity before version 2.6-beta2, and links to the CVE record.
