MEDIUM 5.5 NVD
CVE-2026-19919
A vulnerability was found in code-projects Online Shopping System 1.0. This impacts an unknown function of the file /login.php of the component Login. The manip
A vulnerability was found in code-projects Online Shopping System 1.0. This impacts an unknown function of the file /login.php of the component Login. The manipulation of the argument email results in sql injection. The attack may be performed from remote. The exploit has been made public and could be used.
References
- https://code-projects.org/
- https://github.com/zzzxc643/CVE1/blob/main/online-shopping-system/vul1.md
- https://vuldb.com/cve/CVE-2026-19919
- https://vuldb.com/submit/871811
- https://vuldb.com/vuln/390169
This medium severity vulnerability with a CVSS score of 5.5 was published on 2026-08-16 via NVD.
vulnfeed aggregates 11804 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.