CVE-2026-6187 | SourceCodester Pharmacy Sales and Inventory System 1.0 ajax.php?action=chk_prod_availability ID sql injection
A vulnerability labeled as critical has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This issue affects some unknown processing of the file /ajax.php?action=chk_prod_availability. The manipulation of the argument ID results in sql injection.
This vulnerability was named CVE-2026-6187. The attack may be performed from remote. In addition, an exploit is available.