A vulnerability classified as problematic has been found in thorsten phpMyFAQ up to 4.1.1. This affects the function strip_tags. Performing a manipulation of the argument result.question/result.answerPreview results in cross site scripting.

This vulnerability is identified as CVE-2026-46361. The attack can be initiated remotely. There is not any exploit available.

It is recommended to upgrade the affected component.