LOW 2.1 NVD
CVE-2026-86265
A vulnerability has been found in itsourcecode Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file /pages/us_
A vulnerability has been found in itsourcecode Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file /pages/us_transac.php. Such manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
References
- https://github.com/ltranquility/submit_repository/issues/8
- https://itsourcecode.com/
- https://vuldb.com/cve/CVE-2026-86265
- https://vuldb.com/submit/902721
- https://vuldb.com/vuln/399411
This low severity vulnerability with a CVSS score of 2.1 was published on 2026-09-07 via NVD.
vulnfeed aggregates 10539 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.