๐Ÿ” CVE Alert

CVE-2026-10227

HIGH 7.3

raisulislamg4 student_management_system_by_php User Creation add_user_check.php sql injection

CVSS Score
7.3
EPSS Score
0.0%
EPSS Percentile
10th

A vulnerability has been found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d16d1. The affected element is an unknown function of the file add_user_check.php of the component User Creation Handler. The manipulation of the argument role leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used. This product follows a rolling release approach for continuous delivery, so version details for affected or updated releases are not provided. The project was informed of the problem early through an issue report but has not responded yet.

CWE CWE-89 CWE-74
Vendor raisulislamg4
Product student_management_system_by_php
Published Jun 1, 2026
Last Updated Jun 3, 2026
Stay Ahead of the Next One

Get instant alerts for raisulislamg4 student_management_system_by_php

Be the first to know when new high vulnerabilities affecting raisulislamg4 student_management_system_by_php are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

raisulislamg4 / student_management_system_by_php
310d950e09013d5133c6b9210aff9444382d16d1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
vuldb.com: https://vuldb.com/vuln/367506 vuldb.com: https://vuldb.com/vuln/367506/cti vuldb.com: https://vuldb.com/cve/CVE-2026-10227 vuldb.com: https://vuldb.com/submit/822819 github.com: https://github.com/raisulislamg4/student_management_system_by_php/issues/4 github.com: https://github.com/raisulislamg4/student_management_system_by_php/

Credits

๐Ÿ” Fybox (VulDB User) VulDB CNA Team