CVE-2026-90877
A vulnerability was found in SourceCodester Online Faculty Clearance System 1.0. Affected by this issue is some unknown functionality of the file /update_requirement_status.php. The manipulation of the argument haydi results in sql injection. It is possible to launch the attack remotely. The exploit has been made public and could be used.
- Published Sep 15, 2026
- CVSS 5.5 medium
- 0.4% chance of exploitation in the next 30 days (EPSS)