Vulnerability Details CVE-2026-33088
Movable Type provided by Six Apart Ltd. contains an SQL Injection vulnerability which may allow an attacker to execute an arbitrary SQL statement.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 11.1%
CVSS Severity
CVSS v3 Score 7.3
Products affected by CVE-2026-33088
-
cpe:2.3:a:sixapart:movable_type:*
-
cpe:2.3:a:sixapart:movable_type:1.11
-
cpe:2.3:a:sixapart:movable_type:1.2
-
cpe:2.3:a:sixapart:movable_type:1.21
-
cpe:2.3:a:sixapart:movable_type:1.22
-
cpe:2.3:a:sixapart:movable_type:1.23
-
cpe:2.3:a:sixapart:movable_type:1.24
-
cpe:2.3:a:sixapart:movable_type:1.25
-
cpe:2.3:a:sixapart:movable_type:1.26
-
cpe:2.3:a:sixapart:movable_type:1.27
-
cpe:2.3:a:sixapart:movable_type:1.28
-
cpe:2.3:a:sixapart:movable_type:1.29
-
cpe:2.3:a:sixapart:movable_type:1.30
-
cpe:2.3:a:sixapart:movable_type:1.31
-
cpe:2.3:a:sixapart:movable_type:1.32
-
cpe:2.3:a:sixapart:movable_type:1.33
-
cpe:2.3:a:sixapart:movable_type:1.34
-
cpe:2.3:a:sixapart:movable_type:1.35
-
cpe:2.3:a:sixapart:movable_type:1.36
-
cpe:2.3:a:sixapart:movable_type:1.37
-
cpe:2.3:a:sixapart:movable_type:1.38
-
cpe:2.3:a:sixapart:movable_type:1.39
-
cpe:2.3:a:sixapart:movable_type:1.40
-
cpe:2.3:a:sixapart:movable_type:1.41
-
cpe:2.3:a:sixapart:movable_type:1.42
-
cpe:2.3:a:sixapart:movable_type:1.43
-
cpe:2.3:a:sixapart:movable_type:1.44
-
cpe:2.3:a:sixapart:movable_type:1.45
-
cpe:2.3:a:sixapart:movable_type:1.46
-
cpe:2.3:a:sixapart:movable_type:1.52
-
cpe:2.3:a:sixapart:movable_type:1.53
-
cpe:2.3:a:sixapart:movable_type:1.59
-
cpe:2.3:a:sixapart:movable_type:9.0.5
-
cpe:2.3:a:sixapart:movable_type:9.0.6
-
cpe:2.3:a:sixapart:movable_type:9.1.0