SQL injection through marking blog comments on bulk as spam in GitHub repository forkcms/forkcms prior to 5.11.1.
- https://huntr.dev/bounties/2f664985-c5fc-485b-b4fc-4c401be2cf40
No PoCs found on GitHub currently.