CVE-2026-3752 | SourceCodester Employee Task Management System up to 1.0 GET Parameter /daily-task-report.php Date sql injection (EUVD-2026-10255)
A vulnerability identified as critical has been detected in SourceCodester Employee Task Management System up to 1.0. The affected element is an unknown function of the file /daily-task-report.php of the component GET Parameter Handler. This manipulation of the argument Date causes sql injection.
The identification of this vulnerability is CVE-2026-3752. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.