CVE-2026-21640 - Revive Adserver Format String Injection
CVE ID : CVE-2026-21640
Published : Jan. 20, 2026, 9:16 p.m. | 42 minutes ago
Description : HackerOne community member Faraz Ahmed (PakCyberbot) has reported a format string injection in the Revive Adserver settings. When specific character combinations are used in a setting, the admin user console could be disabled due to a fatal PHP error.
Severity: 2.7 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Jan. 20, 2026, 9:16 p.m. | 42 minutes ago
Description : HackerOne community member Faraz Ahmed (PakCyberbot) has reported a format string injection in the Revive Adserver settings. When specific character combinations are used in a setting, the admin user console could be disabled due to a fatal PHP error.
Severity: 2.7 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...