NVD HIGH: CVE-2026-105387 — A security flaw has been discovered in girishsaraf Online-Appointment-Booking-Sy...
A security flaw has been discovered in girishsaraf Online-Appointment-Booking-System up to f427b4757128ca253d33d0cc4e87bbb9c999a4d5. This affects the function mysqli_query of the file cover.php of the component Patient Login Handler. The manipulation of the argument uname/psw results in sql injection. It is possible to launch the attack remotely. The exploit has been released to the public and may
CVE-2026-105387