CVE-2026-86519
MEDIUMCVSS 5.3Description
A vulnerability was found in code-projects Student Crud Operation 1.0. This impacts an unknown function of the file /card_activation.sql of the component Backup File Handler. The manipulation results in information disclosure. The attack can be launched remotely. The exploit has been made public and could be used.
Timeline
Published:September 8th, 2026 5:16 AM
Last modified:September 8th, 2026 5:16 AM
CVSS Scoring
CVSS v3: 5.3 (MEDIUM)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS v2: 5.0
References & Reports
Advisories, patches, and third-party reports
- https://code-projects.org/
- https://github.com/ahmadmarz10-hub/CVEsMarz/blob/main/Student%20CRUD%20Operation%20in%20PHP%20%E2%80%93%20Sensitive%20Information%20Disclosure%20via%20Exposed%20%60card_activation.sql%60%20Database%20File.md
- https://vuldb.com/cve/CVE-2026-86519
- https://vuldb.com/submit/908879
- https://vuldb.com/vuln/399673
- https://vuldb.com/vuln/399673/cti
Source: NIST NVD · Data may lag official sources by up to one minute