CVE-2026-86180
code-projects Task Management System In PHP Login index.php sql injection
CVSS Score
7.3
EPSS Score
0.0%
EPSS Percentile
0th
A vulnerability has been found in code-projects Task Management System In PHP 1.0. Affected by this vulnerability is an unknown functionality of the file /index.php of the component Login. The manipulation of the argument email leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
| CWE | CWE-89 CWE-74 |
| Vendor | code-projects |
| Product | task management system in php |
| Published | Sep 6, 2026 |
| Last Updated | Sep 8, 2026 |
Stay Ahead of the Next One
Get instant alerts for code-projects task management system in php
Be the first to know when new high vulnerabilities affecting code-projects task management system in php are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Affected Versions
code-projects / Task Management System In PHP
1.0
References
vuldb.com: https://vuldb.com/vuln/399312 vuldb.com: https://vuldb.com/vuln/399312/cti vuldb.com: https://vuldb.com/cve/CVE-2026-86180 vuldb.com: https://vuldb.com/submit/896122 github.com: https://github.com/ahmadmarz10-hub/CVEsMarz/blob/main/Task%20Management%20System%20in%20PHP%20%E2%80%93%20SQL%20Injection%20in%20%60email%60%20Parameter.md code-projects.org: https://code-projects.org/
Credits
๐ AhmadMarzook (VulDB User)