CVE-2026-10619
A vulnerability was detected in sayan365 student-management-system up to 7f3c9ce7d410332335c2affac93a385485051800.
Does this matter?
Lower severity and a low EPSS score (0.50%). Track it; it rarely justifies an emergency change on its own.
Description
A vulnerability was detected in sayan365 student-management-system up to 7f3c9ce7d410332335c2affac93a385485051800. This impacts an unknown function. The manipulation results in improper authentication. The attack can be executed remotely. The exploit is now public and may be used. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. Multiple endpoints are affected. The project was informed of the problem early through an issue report but has not responded yet.
- CVSS 4.0
- 5.5 MEDIUMCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/M
- EPSS
- 0.50% probability · 41th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-287
- Source
- cna@vuldb.com
References
- https://github.com/sayan365/student-management-system/
- https://github.com/sayan365/student-management-system/issues/3
- https://github.com/sayan365/student-management-system/issues/4
- https://vuldb.com/cve/CVE-2026-10619
- https://vuldb.com/submit/829545
- https://vuldb.com/submit/829562
- https://vuldb.com/submit/829566
- https://vuldb.com/submit/829567
- https://vuldb.com/submit/829568
- https://vuldb.com/submit/829569
- https://vuldb.com/vuln/367927
- https://vuldb.com/vuln/367927/cti
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.