Analysis and contextual insights are available on OpenCVE Cloud.
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 07 Oct 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 07 Oct 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthenticated SQL Injection in Site Search of Movable Type |
Wed, 07 Oct 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An SQL Injection vulnerability exists in the Site Search function of Movable Type, which may allow an unauthenticated attacker to execute an arbitrary SQL query on the affected product. | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2026-10-07T17:46:03.432Z
Reserved: 2026-10-02T04:23:47.663Z
Link: CVE-2026-103668
Updated: 2026-10-07T17:45:54.879Z
Status : Awaiting Analysis
Published: 2026-10-07T11:17:09.357
Modified: 2026-10-07T18:17:14.823
Link: CVE-2026-103668
No data.
OpenCVE Enrichment
Updated: 2026-10-07T11:30:16Z
-
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')