CVE-2026-1535

Severity CVSS v4.0:
MEDIUM
Type:
CWE-74 Injection
Publication date:
28/01/2026
Last modified:
28/01/2026

Description

A security vulnerability has been detected in code-projects Online Music Site 1.0. This impacts an unknown function of the file /Administrator/PHP/AdminReply.php. Such manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.