What is CVE-2026-18766?
A SQL Injection vulnerability has been found in chetans9 core-php-admin-panel, affecting the customers.php file. Manipulating the filter_col argument can lead to database compromise. Input validation should be implemented immediately.
Azərbaycanca: Chetans9 core-php-admin-panel-də SQL Injection zəifliyi aşkar edilib. Bu, customers.php faylındakı filter_col arqumentinin manipulyasiyası ilə verilənlər bazasına müdaxiləyə imkan verir. Tərtibatçı daxil olan məlumatların yoxlanılmasını tətbiq etməlidir.
Related CVEs
link basis: same weakness class CWE-89
FAQ2
In which file of core-php-admin-panel was the CVE-2026-18766 vulnerability discovered?
The vulnerability was discovered in the customers.php file.
Which argument needs to be manipulated to exploit the CVE-2026-18766 SQL Injection vulnerability?
Manipulating the filter_col argument can lead to database compromise.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.