SQL Injection Vulnerability in College-Notes-Gallery by anirbandutta9
CVE-2026-95819
Key Information:
- Vendor
Anirbandutta9
- Status
- Vendor
- CVE Published:
- 22 September 2026
Badges
What is CVE-2026-95819?
A SQL injection vulnerability exists in the login.php file of College-Notes-Gallery up to version 8c1cf3d98f30982d069c88ca172612c001eb39f6. This flaw allows unauthorized remote attackers to manipulate user authentication by sending crafted login parameters, potentially compromising sensitive user data and leading to unauthorized access. Given that the vendor employs a rolling release model, specific version details regarding this vulnerability are not disclosed publicly. Security considerations should be prioritized immediately to mitigate risks associated with exploitation.
Affected Version(s)
College-Notes-Gallery 8c1cf3d98f30982d069c88ca172612c001eb39f6
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
