PT-2026-31927 · Unknown · Php-Mysql-User-Login-System

Published

2026-04-10

·

Updated

2026-04-10

·

CVE-2026-29861

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PHP-MYSQL-User-Login-System version 1.0
Description The PHP-MYSQL-User-Login-System version 1.0 contains a SQL injection vulnerability. The vulnerability is located in the username parameter at the 'login.php' endpoint.
Recommendations Address the SQL injection vulnerability in the username parameter of the 'login.php' endpoint.

Exploit

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2026-29861

Affected Products

Php-Mysql-User-Login-System