All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-19904
LOWpublished 2026-08-15 18:16 UTC · 3 days ago
1.9
CVSS / 10
// description
A vulnerability was found in SourceCodester Online Book Store System 1.0. This vulnerability affects unknown code of the file /admin/index.php?page=site_settings of the component System Settings Module. The manipulation results in cross site scripting. The attack can be executed remotely. The exploit has been made public and could be used.
// weaknesses (CWE)
- CWE-79
- CWE-94