CVE-2026-86293: Sourcecodester Simple Traffic Offense System

Medium severity, CVSS 6.5. EPSS: 0.8% chance of exploitation in the next 30 days.

A flaw has been found in SourceCodester Simple Traffic Offense System 1.0. Affected by this vulnerability is an unknown functionality of the file delete-user.php of the component Deletion Endpoint. Executing a manipulation of the argument ID can lead to missing authentication. The attack may be launched remotely. The exploit has been published and may be used.

Affected products

Published 2026-09-07. Last modified 2026-09-08.