CVE WATCH / VULNERABILITY DETAIL
CVE-2026-105226
MEDIUMCVSS 4.7NVD feed
Published 5 October 2026 · tracked since 5 October 2026
Description
A security flaw has been discovered in osCommerce osCommerce2 up to 2.3.4.1. This vulnerability affects the function include of the file admin/newsletters.php of the component Newsletter Management. Performing a manipulation of the argument module results in code injection. The attack is possible to
References
- NVD — National Vulnerability Database
- CVE.org record (MITRE)
- CISA Known Exploited Vulnerabilities catalog
Latest tracked vulnerabilities
- CVE-2026-84169
- CVE-2026-13607
- CVE-2026-78371
- CVE-2026-105231 HIGH 7.3
- CVE-2026-105232 HIGH 7.3
- CVE-2026-105233 MEDIUM 6.3
- CVE-2026-105230 HIGH 7.3
- CVE-2026-105229 HIGH 7.3
- CVE-2026-105188 LOW 3.5
- CVE-2026-105225 MEDIUM 4.3