关键漏洞信息 Title: itsourcecode Agri-Trading Online Shopping System Project v1.0 SQL Injection Description: - SQL Injection vulnerability in version 1.0 within . - Improper sanitization of user input in the parameter leads to SQL injection. - Allows remote, unauthenticated attacker to send crafted POST requests for arbitrary SQL execution. - Lack of session validation allows bypassing authentication. - Possible unauthorized database access, data exfiltration, and record modification. Source: https://github.com/wan1yan1an/cve/issues/3 User: wanyan (UID 95221) Submission Date: 02/09/2026 09:26 AM Moderation Date: 02/20/2026 03:19 PM Status: Accepted VulDB Entry: 347104 Points: 20