Report: CVE-2026-7194 - SourceCodester Pharmacy Sales and Inventory System ajax.php sql injection

Report: CVE-2026-7194 - SourceCodester Pharmacy Sales and Inventory System ajax.php sql injection

CVE ID :CVE-2026-7194 Published : April 27, 2026, 11:16 p.m. | 43 minutes ago Description :A weakness has been identified in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts an unknown function of the file /ajax.php?action=save_product. This manipulation of the argument ID causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
April 27, 2026
Affected Product: php
Impact: sql injection