CVE-2026-86280

A vulnerability was identified in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This affects an unknown function of the file cict_portal.sql. Such manipulation leads to cleartext storage of sensitive information. It is possible to launch the attack remotely. The exploit is publicly available and might be used.

  • Published Sep 7, 2026
  • CVSS 5.5 medium
  • 0.3% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-86280 at the National Vulnerability Database