CVE-2026-78245: Itsourcecode Online Pharmacy System

High severity, CVSS 7.3. EPSS: 0.5% chance of exploitation in the next 30 days.

A flaw has been found in itsourcecode Online Pharmacy System 1.0. This affects the function move_uploaded_file of the file all_users/register.php of the component User Registration. Executing a manipulation of the argument photo can lead to unrestricted upload. The attack may be launched remotely. The exploit has been published and may be used.

Affected products

Published 2026-08-24. Last modified 2026-08-24.