CVE-2026-88395

GouGuOA v6.0.5 and before is vulnerable to SQL Injection in /home/message/rubbish via the keywords parameter.

  • Published Oct 5, 2026
  • CVSS 9.8 critical

CVE-2026-88395 at the National Vulnerability Database