CVE-2026-7549Disclosure

LOWCVSS 5.5 · MEDIUM

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts an unknown function of the file /ajax.php?action=delete_customer. Executing a manipulation of the argument ID can lead to sql injection. The attack may be performed from remote. The exploit has been published and may be used.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-05-01: 3Technical Details · 2026-05-01: 205-01
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7549 SQL Injection in SourceCodester Pharmacy Sales and Inventory System 1.0 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7549

    Post summary

    The text announces an SQL injection vulnerability (CVE‑2026‑7549) affecting SourceCodester Pharmacy Sales and Inventory System 1.0, without providing exploitation or patch details.

    0000040
    4.0K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-7549 A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts an unknown function of the file /ajax.php?action=delete_customer. Executin… https://www.cve.org/CVERecord?id=CVE-2026-7549

    Post summary

    The text reports CVE-2026-7549 as a flaw in SourceCodester Pharmacy Sales and Inventory System 1.0 affecting an unknown function of /ajax.php?action=delete_customer, but it does not provide details on exploitation, patches, or real‑world usage.

    00000126
    57.4K followersView on X
  • Kaitan ID Security@KaitanSecurity
    Disclosure

    ⚠️ HIGH — CVE-2026-7549 A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts an unknown function of th… CVSS 7.3 Full analysis → https://sec.kaitan.id/cves/CVE-2026-7549 #HP #CyberSecurity #InfoSec

    Post summary

    The post announces the discovery of CVE-2026-7549, a high‑severity flaw in SourceCodester Pharmacy Sales and Inventory System 1.0, noting its CVSS 7.3 score, but it provides no PoC, exploit details, patch information, or evidence of active exploitation.

    0000035
    460 followersView on X

Explore more