CVE-2018-19893: Pbootcms
Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.
SearchController.php in PbootCMS 1.2.1 has SQL injection via the index.php/Search/index.html query string.
Affected products
- Pbootcms Pbootcms: version 1.2.1 only
Published 2018-12-06. Last modified 2026-06-17.