CVE-2026-4570 | SourceCodester Sales and Inventory System 1.0 HTTP POST Request /view_customers.php searchtxt sql injection (EUVD-2026-14355)
A vulnerability described as critical has been identified in SourceCodester Sales and Inventory System 1.0. Affected is an unknown function of the file /view_customers.php of the component HTTP POST Request Handler. Such manipulation of the argument searchtxt leads to sql injection.
This vulnerability is documented as CVE-2026-4570. The attack can be executed remotely. Additionally, an exploit exists.