A vulnerability was found in code-projects Simple IT Discussion Forum 1.0. It has been rated as critical. Impacted is an unknown function of the file /delete-category.php. Performing a manipulation of the argument cat_id results in sql injection.
This vulnerability is cataloged as CVE-2026-6004. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.