CVE-2026-0589Improper Authentication in Online Product Reservation System

Severity
6.9MEDIUMNVD
EPSS
0.2%
top 55.90%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 5

Description

A vulnerability was found in code-projects Online Product Reservation System 1.0. Impacted is an unknown function of the component Administration Backend. The manipulation results in improper authentication. The attack may be performed from remote. The exploit has been made public and could be used.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N

🔴Vulnerability Details

2
CVEList
code-projects Online Product Reservation System Administration Backend improper authentication2026-01-05
GHSA
GHSA-x3wv-9jvw-qwq2: A vulnerability was found in code-projects Online Product Reservation System 12026-01-05
CVE-2026-0589 — Improper Authentication | cvebase