An issue discovered in phpwcms 1.9.25 allows remote attackers to run arbitrary code via DB user field during installation.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-36424.json"