๐Ÿ” CVE Alert

CVE-2026-75920

MEDIUM 5.3

phpMyFAQ before 4.1.6 Information Disclosure via Backup ZIP

CVSS Score
5.3
EPSS Score
0.0%
EPSS Percentile
0th

phpMyFAQ before v4.1.6 writes content backup ZIP archives to the web-accessible document root at content.zip, exposing sensitive files including database credentials. Unauthenticated attackers can race concurrent requests to download the temporary ZIP file before deletion, or exploit XSS in admin contexts to trigger authenticated backups and retrieve the archive.

CWE CWE-377
Vendor thorsten
Product phpmyfaq
Published Aug 19, 2026
Stay Ahead of the Next One

Get instant alerts for thorsten phpmyfaq

Be the first to know when new medium vulnerabilities affecting thorsten phpmyfaq are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None

Affected Versions

thorsten / phpMyFAQ
0 < 4.1.6

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-8hmh-mrx6-pqvf vulncheck.com: https://www.vulncheck.com/advisories/phpmyfaq-before-information-disclosure-via-backup-zip

Credits

๐Ÿ” kevinnivekkevin