SQL Injection Vulnerability in SourceCodester Simple Music Cloud Community System
CVE-2026-37338
9.4CRITICAL
Key Information:
- Vendor
SourceCodester
- Vendor
- CVE Published:
- 16 April 2026
What is CVE-2026-37338?
The Simple Music Cloud Community System v1.0 by SourceCodester is susceptible to SQL Injection attacks via the /music/view_user.php file. This vulnerability allows unauthorized attackers to manipulate and execute arbitrary SQL queries within the database, potentially leading to data breaches, unauthorized data modification, and exposure of sensitive information.
