Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.8

SQL Injection in Sourcecodester Personnel Property Equipment System

CVE-2026-26702
Summary

The Sourcecodester Personnel Property Equipment System is open to an attack that could allow an attacker to access sensitive data. This means an attacker could potentially steal or modify important information. Update the system to the latest version to fix this vulnerability.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
jon-remus-sevellejo personnel_property_equipment_system 1.0 –
Original title
sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/myitem_reuse.php.
Original description
sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/myitem_reuse.php.
nvd CVSS3.1 9.8
Vulnerability type
CWE-89 SQL Injection
Published: 2 Mar 2026 · Updated: 13 Mar 2026 · First seen: 6 Mar 2026