CVE-2026-52775 | YesWiki up to 4.6.5 SQL LIKE Clause deleteUserReaction idreaction/id sql injection

SecurityVulns

A vulnerability was found in YesWiki up to 4.6.5 and classified as critical. Affected is the function ReactionManager::deleteUserReaction of the component SQL LIKE Clause. Such manipulation of the argument idreaction/id leads to sql injection.

This vulnerability is referenced as CVE-2026-52775. It is possible to launch the attack remotely. No exploit is available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More