CVE-2026-4617 | SourceCodester Patients Waiting Area Queue Management System 1.0 Patient Check-In api_patient_checkin.php ValidateToken improper authorization (EUVD-2026-14674)
A vulnerability, which was classified as critical, was found in SourceCodester Patients Waiting Area Queue Management System 1.0. The impacted element is the function ValidateToken of the file /php/api_patient_checkin.php of the component Patient Check-In Module. Executing a manipulation can lead to improper authorization.
This vulnerability is registered as CVE-2026-4617. It is possible to launch the attack remotely. Furthermore, an exploit is available.