{"id":"CVE-2026-88416","title":"MCMS 6.1.1 through 6.2.1 has a SQL injection vulnerability in the custom model/form import feature.","summary":"MCMS 6.1.1 through 6.2.1 has a SQL injection vulnerability in the custom model/form import feature.","severity":"none","published":"2026-09-22","updated":"2026-09-24","sourceUpdated":"2026-09-24T21:25:27.050","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-88416","references":[{"url":"https://github.com/15536818056/CVE/issues/3","label":"cve@mitre.org"}],"tags":["nvd","cve.org"],"epss":0.00195,"epssPercentile":0.08131,"ingestedAt":"2026-09-22T20:10:15.101Z","slug":"CVE-2026-88416","body":"## Overview\n\nMCMS 6.1.1 through 6.2.1 has a SQL injection vulnerability in the custom model/form import feature.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}