


Perceptive Security
SOC/SIEM Consultancy

A vulnerability was detected in CodePanda Source canteen_management_system 1.0. Affected by this issue is some unknown functionality of the file /api/login.php.…
Published:
26 April 2026 at 22:00:00
Alert date:
27 April 2026 at 02:01:20
Source:
nvd.nist.gov
Web Technologies
A SQL injection vulnerability has been identified in CodePanda Source canteen_management_system version 1.0. The vulnerability affects the /api/login.php file where manipulation of the Username parameter leads to SQL injection. The attack can be executed remotely and the exploit has been made public. This represents a significant security risk as authentication bypass vulnerabilities are commonly exploited by attackers.
Technical details
Mitigation steps:
Affected products:
CodePanda Source canteen_management_system 1.0
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-7072
https://github.com/redshadowword-cell/CVE/issues/2
https://vuldb.com/submit/799482
https://vuldb.com/vuln/359647
https://vuldb.com/vuln/359647/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
