Vulnerabilities > Pocketmanga > Smanga > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-09-01 CVE-2023-36076 SQL Injection vulnerability in Pocketmanga Smanga
SQL Injection vulnerability in smanga version 3.1.9 and earlier, allows remote attackers to execute arbitrary code and gain sensitive information via mediaId, mangaId, and userId parameters in php/history/add.php.
network
low complexity
pocketmanga CWE-89
critical
9.8