CVE-2018-14940 (v3: 7.5)
5 Aug 2018
PHPCMS 9 allows remote attackers to cause a denial of service (resource consumption) via large font_size, height, and width parameters in an api.php?op=checkcode request.