Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

1875336894

#34577of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2026-47251
7.5
2026-06-08
Code Projects · Online Music Site · CVE-2026-11489
**Name of the Vulnerable Software and Affected Versions** code-projects Online Music Site version 1.0 **Description** A SQL injection issue exists in the `/Administrator/PHP/AdminDeleteAlbum.php` file. Remote attackers can exploit this by manipulating the `ID` argument, which allows for the execution of unauthorized SQL commands. **Recommendations** As a temporary workaround, restrict access to the `/Administrator/PHP/AdminDeleteAlbum.php` file or avoid using the `ID` parameter until a fix is applied. At the moment, there is no information about a newer version that contains a fix for this vulnerability.