High severity7.3NVD Advisory· Published Jun 12, 2026· Updated Jun 12, 2026
CVE-2026-12066
CVE-2026-12066
Description
A security flaw has been discovered in PbootCMS up to 3.2.12. This vulnerability affects the function retrieve of the file apps/home/controller/MemberController.php of the component Password Handler. The manipulation of the argument username/password/email/checkcode results in weak password recovery. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=3.2.12
Patches
Vulnerability mechanics
References
6News mentions
0No linked articles in our index yet.