SOPlanning SQL Injection Vulnerability in projets.php

Vulnerability

A SQL injection vulnerability has been identified in SOPlanning version 1.52.00. This issue allows an authenticated user to manipulate SQL queries via the 'statut[]' parameter in 'projets.php'.

Impact

Exploitation of this vulnerability allows for SQL injection, which could lead to unauthorized data access or manipulation in the database.

Added: May 8, 2026, 6:30 AM
Updated: May 8, 2026, 6:30 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
3.1
exploitability
4.6
remediation
0.0
relevance
7.8
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.