A vulnerability, which was classified as critical, was found in code-projects Online Music Site 1.0. This issue affects some unknown processing of the file /Administrator/PHP/AdminUpdateCategory.php. The manipulation of the argument txtcat results in sql injection.

This vulnerability is identified as CVE-2026-2132. The attack can be executed remotely. Additionally, an exploit exists.