THREAT OPS › Threat News › [NVD] CVE-2026-19921 (MEDIUM 6.3) — A vulnerability was identified in code-projects Online Shopping System 1.0. Affected by this vulnerability is an unknown functionality of the file /homeaction.php. Such manipulation of the argument cat_id leads to sql injection. It is possible to launch the attack remotely. The e
[NVD] CVE-2026-19921 (MEDIUM 6.3) — A vulnerability was identified in code-projects Online Shopping System 1.0. Affected by this vulnerability is an unknown functionality of the file /homeaction.php. Such manipulation of the argument cat_id leads to sql injection. It is possible to launch the attack remotely. The e
CVE-2026-19921 CVSS: 6.3 MEDIUM Published: 2026-08-16T00:16:50.687
A vulnerability was identified in code-projects Online Shopping System 1.0. Affected by this vulnerability is an unknown functionality of the file /homeaction.php. Such manipulation of the argument cat_id leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
Indicators of compromise
- CVE-2026-19921cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-19921