Code Projects · Hotel/Tourism Reservation · CVE-2026-14764
**Name of the Vulnerable Software and Affected Versions**
code-projects Hotel and Tourism Reservation version 1.0
**Description**
An issue exists in the Event Management Page component within the file `/admin/add event.php`. Remote manipulation of the `fdetails` argument allows for SQL injection, a technique where malicious SQL statements are inserted into entry fields for execution.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Avoid using the `fdetails` argument in the `/admin/add event.php` file to minimize the risk of exploitation.