CVE-2026-14649

CVE-2026-14649CVE-2026-14649

Description

A vulnerability was detected in code-projects Online Voting System 1.0. Impacted is the function test_input of the file /saveVote.php. Performing a manipulation of the argument voterName/voterEmail/voterID/selectedCandidate results in sql injection. The attack can be initiated remotely.

Scoring

CVSS 7.3 ()
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Last modified2026-07-04
Sourced from NVD. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.