CVE-2026-88416
MCMS 6.1.1 through 6.2.1 has a SQL injection vulnerability in the custom model/form import feature.
CVSS
—
No CVSS
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Sep 22, 2026 · Last modified: Sep 22, 2026
Not enough EPSS history yet.
MCMS 6.1.1 through 6.2.1 has a SQL injection vulnerability in the custom model/form import feature.
No related CVEs by CWE or product.