CVE-2026-91848 | WuzhiCMS up to 4.1.0 index.php?m=content&f=article&v=getDataOfJson article::getDataOfJson title/master_table sql injection (Issue 218)
A vulnerability was found in WuzhiCMS up to 4.1.0. It has been rated as critical. Affected by this issue is the function article::getDataOfJson of the file /index.php?m=content&f=article&v=getDataOfJson. The manipulation of the argument title/master_table leads to sql injection.
This vulnerability is referenced as CVE-2026-91848. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More