CVE-2026-14762
HIGH
NVD
CVSS Score
7.3
Severity
HIGH
Published
Jul 05, 2026
Vendor
unknown
Description
A vulnerability was detected in code-projects Hotel and Tourism Reservation 1.0. The impacted element is an unknown function of the file /admin/rooms.php of the component Room Management Page. The manipulation of the argument delete results in sql injection. It is possible to launch the attack remotely. The exploit is now public and may be used.