Report: CVE-2026-3946 - PHPEMS index.php cross site scripting

Report: CVE-2026-3946 - PHPEMS index.php cross site scripting

CVE ID :CVE-2026-3946 Published : March 11, 2026, 3:02 p.m. | 16 minutes ago Description :A vulnerability was detected in PHPEMS 11.0. The affected element is an unknown function of the file /index.php?ask=app-ask. Performing a manipulation of the argument askcontent results in cross site scripting. The attack is possible to be carried out remotely. The exploit is now public and may be used. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Published
March 11, 2026
Affected Product: php