CVE-2026-3736: code-projects Simple Flight Ticket Booking System SearchResultRoundtrip.php sql injection
A vulnerability was found in code-projects Simple Flight Ticket Booking System 1.0. Affected by this issue is some unknown functionality of the file SearchResultRoundtrip.php. Performing a manipulation of the argument from results in sql injection. The attack may be initiated remotely. The exploit has been made public and could be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-3736?
CVE-2026-3736 has a medium severity rating due to potential SQL injection vulnerabilities that could compromise database integrity.
How do I fix CVE-2026-3736?
To mitigate CVE-2026-3736, validate and sanitize user inputs to prevent SQL injection attacks.
What software is affected by CVE-2026-3736?
CVE-2026-3736 affects the Code-projects Simple Flight Ticket Booking System version 1.0.
What type of vulnerability is CVE-2026-3736?
CVE-2026-3736 is classified as an SQL injection vulnerability.
Can CVE-2026-3736 lead to data breaches?
Yes, if exploited, CVE-2026-3736 can lead to unauthorized access to sensitive data in the database.