CVE-2026-3754 | SourceCodester Sales and Inventory System 1.0 /add_stock.php cost sql injection (EUVD-2026-10257)
A vulnerability marked as critical has been reported in SourceCodester Sales and Inventory System 1.0. This affects an unknown function of the file /add_stock.php. Performing a manipulation of the argument cost results in sql injection.
This vulnerability is identified as CVE-2026-3754. The attack can be initiated remotely. Additionally, an exploit exists.