CVE-2026-9420: KLiK SocialMediaWebsite HTTP GET Request Parameter injection
Published May 25, 2026
·Updated
A vulnerability was found in KLiK SocialMediaWebsite 1.0. This affects an unknown part of the component HTTP GET Request Parameter Handler. The manipulation results in injection. It is possible to launch the attack remotely. The exploit has been made public and could be used.
Affected Software
1 affected component
KLiK KLiK SocialMediaWebsite=1.0
Event History
May 25, 2026
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-9420?
CVE-2026-9420 has a medium severity rating of 6.3.
2
How do I fix CVE-2026-9420?
To fix CVE-2026-9420, update the KLiK SocialMediaWebsite to the latest version that addresses the HTTP GET Request Parameter injection vulnerability.
3
What type of attack can be executed using CVE-2026-9420?
CVE-2026-9420 allows for remote injection attacks via manipulated HTTP GET Request Parameters.
4
Which software is affected by CVE-2026-9420?
CVE-2026-9420 affects KLiK SocialMediaWebsite version 1.0.
5
Is the exploit for CVE-2026-9420 publicly available?
Yes, the exploit for CVE-2026-9420 has been made public and could be leveraged by attackers.