CVE-2026-3758Disclosure(projectworlds / online_art_gallery_shop)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A weakness has been identified in projectworlds Online Art Gallery Shop 1.0. Affected by this issue is some unknown functionality of the file /admin/adminHome.php. This manipulation of the argument Info causes sql injection. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-89

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • online_art_gallery_shop

Threat summary

  • 6 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 4 signals
  • Disclosure: 4 classified signals
  • General: 2 classified signals
  • Peaked 3d ago at 2 mentions (2026-03-08); latest day: 1
  • 6 total mentions across 4 days

Affected systems

Products
online_art_gallery_shop

1 version affected across 1 product

Deep dive

Activity timeline6 mentions / 4d
01122Mentions · 2026-03-08: 2Mentions · 2026-03-09: 2Mentions · 2026-03-12: 1Mentions · 2026-03-13: 1Technical Details · 2026-03-08: 1Technical Details · 2026-03-09: 1Technical Details · 2026-03-12: 1Technical Details · 2026-03-13: 103-0803-0903-1203-13
Signal classification2 categories
Disclosure
466.7%
General
233.3%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-03-082
Disclosure2
2026-03-092
Disclosure1General1
2026-03-121
General1
2026-03-131
Disclosure1
Full discourse6 posts
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-3758 (CVSS:6.9, HIGH) is Analyzed. A weakness has been identified in projectworlds Online Art Gallery Shop 1.0. Affected by this issue is some unknown func..https://nvd.nist.gov/vuln/detail/CVE-2026-3758 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post announces CVE-2026-3758 as a high‑severity flaw affecting projectworlds Online Art Gallery Shop 1.0, but it offers no details on exploitation, patches, or a PoC.

    0000019
    172 followersView on X
  • CRAC Learning - Tech@cracbot
    General

    CVE-2026-3758 (CVSS:6.9, HIGH) is Analyzed. A weakness has been identified in projectworlds Online Art Gallery Shop 1.0. Affected by this issue is some unknown func..https://nvd.nist.gov/vuln/detail/CVE-2026-3758 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post references CVE-2026-3758, noting its CVSS score and affected application, but provides no evidence of exploitation, PoC, or patch information.

    0000017
    172 followersView on X
  • DailyCVE@dailycve
    Disclosure

    🟠 projectworlds Online Art Gallery Shop, SQL Injection, #CVE-2026-3758 (MEDIUM) https://dailycve.com/projectworlds-online-art-gallery-shop-sql-injection-cve-2026-3758-medium/

    Post summary

    The message announces a Medium‑severity SQL Injection vulnerability (CVE‑2026‑3758) found in projectworlds Online Art Gallery Shop and links to a dailyCVE article, but provides no proof of concept, exploit details, or patch information.

    0000024
    166 followersView on X
  • RedPacket Security@RedPacketSec
    General

    CVE Alert: CVE-2026-3758 - projectworlds - Online Art Gallery Shop - https://www.redpacketsecurity.com/cve-alert-cve-2026-3758-projectworlds-online-art-gallery-shop/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-3758 #projectworlds #online-art-gallery-shop

    Post summary

    The notice briefly references CVE-2026-3758 affecting the projectworlds Online Art Gallery Shop and directs readers to a linked page for more information, but it does not provide technical details or evidence of exploitation.

    00000112
    3.5K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-3758 A weakness has been identified in projectworlds Online Art Gallery Shop 1.0. Affected by this issue is some unknown functionality of the file /admin/adminHome.php. This… https://www.cve.org/CVERecord?id=CVE-2026-3758

    Post summary

    The CVE has been disclosed, reporting a weakness in the /admin/adminHome.php file of projectworlds Online Art Gallery Shop 1.0, with no PoC, exploit, patch, or detailed technical details provided.

    0000071
    56.6K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-3758 SQL Injection in ProjectWorlds Online Art Gallery Shop 1.0 via Admin Interface https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-3758

    Post summary

    The message discloses CVE‑2026‑3758 as a SQL injection flaw in ProjectWorlds Online Art Gallery Shop 1.0’s admin interface, linking to a vulnerability details page.

    0000044
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appprojectworldsonline_art_gallery_shop1.0--

Explore more