{"id":"CVE-2026-14648","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-14648","summary":"A security vulnerability has been detected in code-projects Online Voting System up to 0.x/1.0. This issue affects the function test_input of the file /authentication.php of the component…","details":"A security vulnerability has been detected in code-projects Online Voting System up to 0.x/1.0. This issue affects the function test_input of the file /authentication.php of the component Login. Such manipulation of the argument adminUserName/adminPassword leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.","published":"2026-07-04T20:16:54.780","modified":"2026-07-06T18:16:38.143","cvss":{"score":7.3,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[],"fix":null,"references":[{"type":"WEB","url":"https://code-projects.org/"},{"type":"WEB","url":"https://gist.github.com/c4ttr4ck/ed954dc2e3da968eb460a18385146f4c"},{"type":"WEB","url":"https://vuldb.com/cve/CVE-2026-14648"},{"type":"WEB","url":"https://vuldb.com/submit/846328"},{"type":"WEB","url":"https://vuldb.com/vuln/376161"},{"type":"WEB","url":"https://vuldb.com/vuln/376161/cti"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-07-06T18:16:38.143"}}