Unknown · Bloodbank Managing System · CVE-2026-7731
**Name of the Vulnerable Software and Affected Versions**
code-projects BloodBank Managing System version 1.0
**Description**
An issue exists in the file 'get state.php' where the manipulation of the `G STATE ID` argument allows for SQL injection, which is a technique where malicious SQL statements are inserted into entry fields for execution. This flaw enables remote exploitation.
**Recommendations**
Restrict access to the file 'get state.php' or avoid using the `G STATE ID` argument until a fix is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.