CVE-2026-90708 | Yot CMS up to 3.3.1 Cookie global.php login yot3_user/yot3_pass sql injection
A vulnerability was found in Yot CMS up to 3.3.1. It has been rated as critical. Affected by this vulnerability is the function Login of the file global.php of the component Cookie Handler. This manipulation of the argument yot3_user/yot3_pass causes sql injection.
The identification of this vulnerability is CVE-2026-90708. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.VulDB Recent EntriesRead More