CVE List

CVE-2026-2115

Critical 7.3

A flaw has been found in itsourcecode Society Management System 1.0. This issue affects some unknown processing of the file /admin/delete_expenses.php. This manipulation of the argument expenses_id causes sql injection. It is possible to initiate the attack remotely. The exploit has been published and may be used.

Published February 7, 2026.

Affected software

Get alerts for Angeljudesuarez Society Management System

Reference links