CVE-2026-19344

Summary

A vulnerability has been found in code-projects Task Management System 1.0. Affected by this issue is some unknown functionality of the file /user/comment_count_user.php. The manipulation of the argument task_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Affected Software

VendorProductVersion RangeStatus
code-projectsTask Management System1.0affected

Weaknesses

  • CWE-89: SQL Injection
  • CWE-74: Injection

References