searchCustomPages of the file phpmyfaq/src/phpMyFAQ/Search.php. Such manipulation leads to improper neutralization of special elements in data query logic.This vulnerability is documented as CVE-2026-34973. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.