CVE-2017-17589: Thumbtack Clone Project Thumbtack Clone

Critical severity, CVSS 9.8. EPSS: 3% chance of exploitation in the next 30 days.

FS Thumbtack Clone 1.0 has SQL Injection via the browse-category.php cat parameter or the browse-scategory.php sc parameter.

Affected products

Published 2017-12-13. Last modified 2026-06-17.