CVE-2026-90857

A vulnerability was detected in SourceCodester College Notes Gallery Management System 1.0. Affected is an unknown function of the file /dashboard/userprofile.php of the component Profile Upload. Performing a manipulation of the argument image results in unrestricted upload. The attack may be initiated remotely. The exploit is now public and may be used.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-15 04:18

Updated : 2026-09-15 14:37


NVD link : CVE-2026-90857

Mitre link : CVE-2026-90857

CVE.ORG link : CVE-2026-90857


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control

CWE-434

Unrestricted Upload of File with Dangerous Type