CVE-2017-17902: Kliqqi CMS

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

SQL Injection exists in Kliqqi CMS 3.5.2 via the randkey parameter of a new story at the pligg/story.php?title= URI.

Affected products

  • Kliqqi Kliqqi CMS: version 3.5.2 only

Published 2018-04-22. Last modified 2026-06-17.