VYPR
Unrated severityNVD Advisory· Published Jul 4, 2026· Updated Jul 7, 2026

CodeAstro Ecommerce Website my_account.php sql injection

CVE-2026-14639

Description

A vulnerability has been found in CodeAstro Ecommerce Website 1.0. This impacts an unknown function of the file /ecommerce-website-php/customer/my_account.php?edit_account. Such manipulation of the argument c_name leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

Affected products

1

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.