CVE-2026-26890: SQL Injection
Published Mar 3, 2026
·Updated
Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manageproduct.php.
Affected Software
2 affected components
Sourcecodester Pharmacy Point of Sale System
oretnom23 Pharmacy Point Of Sale System=1.0
Event History
Mar 3, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-26890?
CVE-2026-26890 has been classified as a high severity vulnerability due to its SQL Injection risk.
2
How do I fix CVE-2026-26890?
To fix CVE-2026-26890, update to a patched version of the Sourcecodester Pharmacy Point of Sale System or implement proper input validation and parameterized queries.
3
What type of vulnerability is CVE-2026-26890?
CVE-2026-26890 is an SQL Injection vulnerability that allows attackers to manipulate database queries.
4
Which software is affected by CVE-2026-26890?
CVE-2026-26890 affects Sourcecodester Pharmacy Point of Sale System version 1.0.
5
What are the potential impacts of CVE-2026-26890?
The impacts of CVE-2026-26890 can include unauthorized access to sensitive data and potential complete compromise of the database.