Incorrect authorization in phpMyFAQ - #VU140884
Published: August 4, 2026
Vulnerability details
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to improper access control in the public PDF export endpoint when handling requests for inactive or deactivated FAQ records. A remote attacker can send a specially crafted request to disclose sensitive information.
On affected configurations, the issue can expose the FAQ title, solution id, author name, and last-update date, while the answer body is redacted. The record must already be in a guest-readable category.