Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
2.7

SQL Injection in Sourcecodester Logistic Hub Parcel's Management System

CVE-2026-26891
Summary

A weakness in Sourcecodester Logistic Hub Parcel's Management System allows attackers to execute malicious SQL code, potentially exposing sensitive data. This issue affects the /manage_parcel_type.php page. To protect your system, update to a fixed version or apply a patch to prevent unauthorized access to your data.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
oretnom23 simple_logistic_hub_parcel\'s_management_system 1.0 –
Original title
Sourcecodester Logistic Hub Parcel's Management System v1.0 is vulnerable to SQL Injection in /manage_parcel_type.php.
Original description
Sourcecodester Logistic Hub Parcel's Management System v1.0 is vulnerable to SQL Injection in /manage_parcel_type.php.
nvd CVSS3.1 2.7
Vulnerability type
CWE-89 SQL Injection
Published: 3 Mar 2026 · Updated: 13 Mar 2026 · First seen: 6 Mar 2026