Report: CVE-2026-4826 - SourceCodester Sales and Inventory System HTTP GET Parameter update_stock.php sql

Report: CVE-2026-4826 - SourceCodester Sales and Inventory System HTTP GET Parameter update_stock.php sql

CVE ID :CVE-2026-4826 Published : March 26, 2026, 12:16 a.m. | 45 minutes ago Description :A vulnerability was determined in SourceCodester Sales and Inventory System 1.0. This vulnerability affects unknown code of the file /update_stock.php of the component HTTP GET Parameter Handler. This manipulation of the argument sid causes sql injection. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. If you want to get best quality of vulnerability data, you may have to visit VulDB. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
March 26, 2026
Affected Product: php
Impact: sql injection