CVE-2026-4574General

LOWCVSS 2.1 · LOW

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was detected in SourceCodester Simple E-learning System 1.0. This vulnerability affects unknown code of the component User Profile Update Handler. The manipulation of the argument firstName results in sql injection. It is possible to launch the attack remotely. The exploit is now public and may be used.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-03-23); latest day: 1
  • 3 total mentions across 2 days

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-03-23: 2Mentions · 2026-03-24: 1Technical Details · 2026-03-23: 103-2303-24
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-03-232
Disclosure1General1
2026-03-241
General1
Full discourse3 posts
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2026-4574 📊 Severity: 6.3 🚨 Risk Level: Medium 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-4574 #CVE-2026-4574 #CVE #Medium  #CyberSecurity #InfoSec https://t.co/pE8wj5DpL6

    Post summary

    The tweet merely announces a new medium‑severity CVE (CVE‑2026‑4574) with a link to the NVD entry, offering no PoC, exploit, patch, or technical details.

    0000023
    111 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-4574 SQL Injection in SourceCodester Simple E-learning System 1.0 User Profile Update Handler https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-4574

    Post summary

    The text announces the discovery of a SQL injection vulnerability (CVE-2026-4574) in SourceCodester Simple E-learning System 1.0, without providing any PoC, exploit code, patch, or evidence of active exploitation.

    0000036
    4.0K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-4574 A vulnerability was detected in SourceCodester Simple E-learning System 1.0. This vulnerability affects unknown code of the component User Profile Update Handler. The m… https://www.cve.org/CVERecord?id=CVE-2026-4574

    Post summary

    A CVE was reported for SourceCodester Simple E‑learning System 1.0 concerning an unknown component, with only a link to the CVE record and no further technical or remediation information.

    0000055
    56.8K followersView on X

Explore more