CVE-2026-19344: Code-Projects Task Management System

High severity, CVSS 7.3. EPSS: 0.4% chance of exploitation in the next 30 days.

A vulnerability has been found in code-projects Task Management System 1.0. Affected by this issue is some unknown functionality of the file /user/comment_count_user.php. The manipulation of the argument task_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Affected products

Published 2026-08-09. Last modified 2026-08-12.