CVE-2026-7592Disclosure

LOWCVSS 5.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A weakness has been identified in itsourcecode Courier Management System 1.0. This affects an unknown function of the file /edit_staff.php. Executing a manipulation of the argument ID can lead to sql injection. The attack may be launched remotely. The exploit has been made available to the public and could be used for attacks.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • General: 2 classified signals
  • Peaked 2d ago at 3 mentions (2026-05-01); latest day: 1
  • 5 total mentions across 3 days

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-05-01: 3Mentions · 2026-05-02: 1Mentions · 2026-06-09: 1Technical Details · 2026-05-01: 2Technical Details · 2026-05-02: 1Technical Details · 2026-06-09: 105-0105-0206-09
Signal classification2 categories
Disclosure
360.0%
General
240.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-05-013
Disclosure2General1
2026-05-021
Disclosure1
2026-06-091
General1
Full discourse5 posts
  • Joey Romaine 🇺🇸 |=★=|@Tank23x0
    General

    CVE-2026-7592 is a good patch-discipline check. weakness / SQL injection. Public details are enough to start scoping. Where does this show up in your environment?

    Post summary

    The post notes CVE‑2026‑7592 as a SQL injection vulnerability and advises checking for its presence, but provides no specific exploit, patch, or active exploitation details.

    1001026
    315 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-7592 A weakness has been identified in itsourcecode Courier Management System 1.0. This affects an unknown function of the file /edit_staff.php. Executing a manipulation of … https://www.cve.org/CVERecord?id=CVE-2026-7592

    Post summary

    CVE-2026-7592 is reported as a weakness in Courier Management System 1.0 affecting /edit_staff.php; no PoC, exploit, patch, or active exploitation information is provided.

    00010180
    57.4K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7592 SQL Injection in itsourcecode Courier Management System 1.0 /edit_staff.php https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7592

    Post summary

    The information announces a CVE for a SQL injection flaw in Courier Management System but does not provide a PoC, exploit, or patch details.

    0000052
    4.0K followersView on X
  • Kaitan ID Security@KaitanSecurity
    Disclosure

    ⚠️ HIGH — CVE-2026-7592 A weakness has been identified in itsourcecode Courier Management System 1.0. This affects an unknown function of the f… CVSS 7.3 Full analysis → https://sec.kaitan.id/cves/CVE-2026-7592 #HP #CyberSecurity #InfoSec

    Post summary

    The post announces CVE-2026-7592 in Courier Management System 1.0 with a CVSS score of 7.3, and links to an analysis page; it does not provide exploit code, patch info, or evidence of active use.

    0000037
    458 followersView on X
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-7592 A weakness has been identified in itsourcecode Courier Management System 1.0. This affects an unknown function of the file /edit_staff.php. Executing a manipulation of … https://www.cve.org/CVERecord?id=CVE-2026-7592 ----- Traducción: CVE-2026-7592 Se … http://infoflow.cloud`

    Post summary

    The short post announces CVE‑2026‑7592, noting a weakness in /edit_staff.php of Courier Delivery System 1.0, but offers no PoC, exploit details, patch information, or deep technical classification.

    0000030
    75 followersView on X

Explore more