CRITICAL
9.8 CVE-2026-71625 Published 4 Sept 2026
ThinkSNS+ v2.4 Remote Privilege Escalation
Worried this affects one of your servers?
A vulnerability in ThinkSNS+ v2.4 allows remote attackers to escalate privileges by exploiting the ResetPasswordController.php component.
Reference: CVE-2026-71625 on NVD
← Back to Security News