CVE-2025-59943
phpMyFAQ Account Ambiguity Due to Duplicate Email Registration.
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
phpMyFAQ, an open-source FAQ web application, has a vulnerability allowing multiple accounts to share an email address. This can cause account confusion and potentially lead to unauthorized access or control if email is used for password resets or administrative actions. It is important to verify if your phpMyFAQ insta