PT-2026-31927 · Unknown · Php-Mysql-User-Login-System

CVE-2026-29861

·

Published

2026-04-10

·

Updated

2026-04-10

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PHP-MYSQL-User-Login-System version 1.0
Description The PHP-MYSQL-User-Login-System version 1.0 contains a SQL injection vulnerability. The vulnerability is located in the username parameter at the 'login.php' endpoint.
Recommendations Address the SQL injection vulnerability in the username parameter of the 'login.php' endpoint.

Exploit

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-29861

Affected Products

Php-Mysql-User-Login-System