CVE-2026-86292

A vulnerability was detected in SourceCodester Simple Traffic Offense System 1.0. Affected is an unknown function of the file saveuser.php of the component User Creation. Performing a manipulation of the argument position results in missing authentication. The attack may be initiated remotely. The exploit is now public and may be used.

  • Published Sep 7, 2026
  • CVSS 5.5 medium
  • 0.7% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-86292 at the National Vulnerability Database