CVE-2026-82610

A security flaw has been discovered in itsourcecode Online Medicine Delivery System 1.0. Affected is the function Employee::employeeAuthentication of the file /rider/login.php of the component Login Interface. The manipulation of the argument emp_email results in sql injection. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks.

  • Published Aug 31, 2026
  • CVSS 5.5 medium
  • 0.6% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-82610 at the National Vulnerability Database