PatchSiren

PbootCMS CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM PbootCMS CVE published 2026-05-26

CVE-2026-36239

A code injection vulnerability has been identified in PbootCMS v.3.2.11 within its site configuration functionality. The vulnerability was published to the CVE Program on 26 May 2026. At this time, no CVSS score or severity rating has been assigned by NVD, and the vulnerability has not been added to CISA's Known Exploited Vulnerabilities (KEV) catalog. The vendor attribution is currently marked as requiri [truncated]