CVE-2026-102908

A vulnerability was determined in SourceCodester Online Reviewer Management System 1.0. This issue affects some unknown processing of the file /reviewer_0/admins/assessments/examproper/questions-view.php. Executing a manipulation of the argument ID can lead to sql injection. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.

  • Published Sep 30, 2026
  • CVSS 5.5 medium
  • 0.3% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-102908 at the National Vulnerability Database