Skip to content

CVE-2026-56396

CVE

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
June 21, 2026
Last Seen
June 21, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A critical vulnerability, CVE-2026-56396, has been identified in phpMyFAQ versions prior to 4.1.4. This vulnerability allows authenticated non-SuperAdmin users with edit_user permissions to escalate their privileges to SuperAdmin by modifying the is_superadmin flag through the editUser() and updateU...

Public Exploits

Checking GitHub for proof-of-concept code…