CVE-2026-3806 | SourceCodester/janobe Resort Reservation System 1.0 /room_rates.php q sql injection (EUVD-2026-10299)
A vulnerability identified as critical has been detected in SourceCodester/janobe Resort Reservation System 1.0. This issue affects some unknown processing of the file /room_rates.php. This manipulation of the argument q causes sql injection.
This vulnerability is handled as CVE-2026-3806. The attack can be initiated remotely. Additionally, an exploit exists.