CVE-2026-19919 | code-projects Online Shopping System 1.0 Login /login.php email sql injection (EUVD-2026-59809)
A vulnerability, which was classified as critical, was found in code-projects Online Shopping System 1.0. This impacts an unknown function of the file /login.php of the component Login. The manipulation of the argument email results in sql injection.
This vulnerability was named CVE-2026-19919. The attack may be performed from remote. In addition, an exploit is available.