CVE-2026-6142Disclosure

LOWCVSS 5.5 · MEDIUM

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was identified in tushar-2223 Hotel Management System up to bb1f3b3666124b888f1e4bcf51b6fba9fbb01d15. Affected by this vulnerability is an unknown functionality of the file /admin/roomdelete.php. The manipulation of the argument ID leads to sql injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used. This product follows a rolling release approach for continuous delivery, so version details for affected or updated releases are not provided. The project was informed of the problem early through an issue report but has not responded yet.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-04-13: 3Technical Details · 2026-04-13: 204-13
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • CVEarity@CVEarity
    Disclosure

    ⚡ New CVE Alert: CVE-2026-6142 📊 Severity: 7.3 🚨 Risk Level: High 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-6142 #CVE-2026-6142 #CVE #High #CyberSecurity #InfoSec https://t.co/7vSRswlT5y

    Post summary

    The tweet announces CVE-2026-6142, noting a severity score of 7.3 and high risk level, with a reference to the NVD entry, but offers no further technical or exploit details.

    0000031
    125 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-6142 A vulnerability was identified in tushar-2223 Hotel Management System up to bb1f3b3666124b888f1e4bcf51b6fba9fbb01d15. Affected by this vulnerability is an unknown funct… https://www.cve.org/CVERecord?id=CVE-2026-6142

    Post summary

    The brief statement only identifies CVE‑2026‑6142 and notes the affected system and commit hash, without providing further technical or operational details.

    0000095
    57.1K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-6142 SQL Injection in tushar-2223 Hotel Management System /admin/roomdelete.php https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-6142

    Post summary

    The post announces a SQL Injection vulnerability (CVE‑2026‑6142) affecting the /admin/roomdelete.php endpoint of the tushar‑2223 Hotel Management System, with a reference link for more details.

    0000044
    4.0K followersView on X

Explore more