CVE-2026-86221: Sourcecodester Class And Exam Timetabling System

High severity, CVSS 7.3. EPSS: 0.4% chance of exploitation in the next 30 days.

A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is the function mysqli_query of the file /admin/modal_add_course1.php. This manipulation of the argument course causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.

Affected products

Published 2026-09-06. Last modified 2026-09-08.