2026-03-01 · 2 min · BitNinja Team
WeGIA CVE-2026-28411: Authentication Bypass Risk
The recent discovery of CVE-2026-28411 highlights a critical vulnerability in WeGIA, a web manager for charitable organizations. Versions prior to 3.6.5 utilize the extract() function on the $REQUEST superglobal improperly. This flaw allows unauthenticated attackers to bypass...
