SQL Injection Vulnerability (CVE-2026-13485) Disclosed in SourceCodester Class and Exam Timetabling System

AI-generated NewsSnap summary based on source reporting.
Published: 2026-06-28
Category: technology
Source: Vulnerability Database (VulDB)

A critical SQL injection vulnerability, tracked as CVE-2026-13485, has been discovered in SourceCodester Class and Exam Timetabling System version 1.0. The flaw, found in the `/preview.php` file through manipulation of the `course_year_section` argument, allows for remote exploitation. The exploit has been made public, posing a significant risk to affected systems.

Want more?

Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.

Open NewsSnap.ai