SourceCodester Engineers Online Portal v1.0 is vulnerable to SQL Injection in update_password.php via the new_password parameter.
CVE-2026-36236
NONE
EPSS 0.04%
Updated Apr 10, 2026
PHP
CVE Details
CVE ID
CVE-2026-36236
Published Date
Apr 10, 2026
Vendor
PHP
Severity
NONE
Exploit Prediction (EPSS)
Probability of Exploit
0.04%
Likelihood of exploitation in next 30 days
Percentile:
12.2th percentile (higher than 12.2% of all CVEs)
Standard patching cycle
Impact
Minimal impact
Source
View Advisory