CVE-2026-30575

A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1.0 in the add-stock.php file. The application fails to validate the "txtqty" parameter during stock entry, allowing negative values to be processed. This causes the system to decrease the inventory level instead of increasing it, leading to inventory corruption and potential Denial of Service by depleting stock records.
Configurations

No configuration.

History

No history.

Information

Published : 2026-03-27 17:16

Updated : 2026-03-30 13:26


NVD link : CVE-2026-30575

Mitre link : CVE-2026-30575

CVE.ORG link : CVE-2026-30575


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation

CWE-1284

Improper Validation of Specified Quantity in Input