CVE-2026-35470 | devcode-it openstamanager up to 2.10.1 Customer Information confronta_righe.php righe sql injection (GHSA-mmm5-3g4x-qw39)
A vulnerability, which was classified as critical, was found in devcode-it openstamanager up to 2.10.1. This affects an unknown function of the file confronta_righe.php of the component Customer Information Handler. Such manipulation of the argument righe leads to sql injection.
This vulnerability is documented as CVE-2026-35470. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.