CVE-2026-36950: SQL Injection
Published Apr 13, 2026
·Updated
Sourcecodester Online Thesis Archiving System v1.0 is vulnerable to SQL injection in /otas/projectsperdepartment.php.
Affected Software
1 affected component
Sourcecodester Online Thesis Archiving System=1.0
Event History
Apr 13, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-36950?
The severity of CVE-2026-36950 is classified as low with a CVSS score of 2.7.
2
What is the vulnerability CVE-2026-36950 related to?
CVE-2026-36950 is related to SQL injection in the Sourcecodester Online Thesis Archiving System.
3
How do I fix CVE-2026-36950?
To fix CVE-2026-36950, implement parameterized queries or prepared statements to mitigate the SQL injection risk.
4
What are the potential consequences of CVE-2026-36950?
The potential consequences of CVE-2026-36950 include unauthorized access to the database and exposure of sensitive information.
5
Which component is affected by CVE-2026-36950?
The component affected by CVE-2026-36950 is /otas/projects_per_department.php in the Sourcecodester Online Thesis Archiving System.