Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-23836

Опубликовано: 19 янв. 2026
Источник: nvd
CVSS3: 9.9
EPSS Низкий

Описание

HotCRP is conference review software. A problem introduced in April 2024 in version 3.1 led to inadequately sanitized code generation for HotCRP formulas which allowed users to trigger the execution of arbitrary PHP code. The problem is patched in release version 3.2.

EPSS

Процентиль: 26%
0.00091
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-20

EPSS

Процентиль: 26%
0.00091
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-20