HIGHVulnerability

CVE-2026-82701

A vulnerability was determined in code-projects Online Shopping System 1.0. Affected by this issue is some unknown functionality of the file /action.php of the component Search Functionality. This manipulation of the argument keyword causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.

Properties

severity
HIGH
score
7.3
epss_score
0.00263
cve_id
CVE-2026-82701
vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
published_at
2026-08-31T15:18:10.420
last_modified
2026-09-02T14:17:15.600
epss_percentile
0.17999

Related Entities (4)

ENRICHED_BY (1)

[Source]FIRST EPSS

DESCRIBED_BY (1)

[Source]NVD

HAS_WEAKNESS (2)

[Weakness]Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
[Weakness]Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-82701 — Ninja Signal Threat Intelligence | Ninja Signal