New SQL Injection Vulnerability (CVE-2026-92221) Disclosed in gedelumbung HospitalManagement
A new SQL injection vulnerability, tracked as CVE-2026-92221, has been identified in the `generate_index_pasien` function of the `application/models/app_global_admin_model.php` file within gedelumbung HospitalManagement. This flaw allows for remote exploitation through manipulation of the 'cari' argument. The exploit has been publicly disclosed, and while the project was informed, it has not yet responded.
Want more?
Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.
Open NewsSnap.ai