CVE-2026-52775 | YesWiki up to 4.6.5 SQL LIKE Clause deleteUserReaction idreaction/id sql injection
A vulnerability was found in YesWiki up to 4.6.5 and classified as critical. Affected is the function ReactionManager::deleteUserReaction of the component SQL LIKE Clause. Such manipulation of the argument idreaction/id leads to sql injection.
This vulnerability is referenced as CVE-2026-52775. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More