CVE-2023-3686: A vulnerability was found in Bylancer QuickAI OpenAI 3.8.1. It has been declared as critical. This vulnerability affects
mediumvulnerability
security
Summary
A critical vulnerability (CVE-2023-3686) was found in Bylancer QuickAI OpenAI version 3.8.1 that allows SQL injection (a technique where attackers insert malicious database commands into user input) through the 's' parameter in the /blog file's GET Parameter Handler. The attack can be launched remotely, and the vendor did not respond to early disclosure attempts.
Vulnerability Details
CVSS Score
6.3(medium)
EPSS (30-day exploit probability)
EPSS: 0.0%
Classification
Attack SophisticationTrivial
Impact (CIA+S)
confidentialityintegrityavailability
Affected Vendors
Original source: https://nvd.nist.gov/vuln/detail/CVE-2023-3686
First tracked: February 15, 2026 at 08:49 PM
Classified by LLM (prompt v3) · confidence: 72%