Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Cyanpencil

#23901de 53,635
9.9CVSS total
Vulnerabilidades · 1
PT-2026-3476
9.9
2026-01-19
Hotcrp · Hotcrp · CVE-2026-23836
**Name of the Vulnerable Software and Affected Versions** HotCRP version 3.1 **Description** HotCRP is conference review software. A flaw introduced in April 2024 in version 3.1 allows users to trigger the execution of arbitrary PHP code due to inadequately sanitized code generation for HotCRP formulas. The issue grants remote code execution with user privileges. **Recommendations** Update HotCRP to version 3.2.