CVE-2026-90697

A vulnerability was identified in SourceCodester Inventory Management System 1.0. This affects an unknown part of the file invoice.php. The manipulation of the argument ID leads to authorization bypass. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-14 09:17

Updated : 2026-09-15 14:17


NVD link : CVE-2026-90697

Mitre link : CVE-2026-90697

CVE.ORG link : CVE-2026-90697


JSON object : View

Products Affected

No product.

CWE
CWE-285

Improper Authorization

CWE-639

Authorization Bypass Through User-Controlled Key