All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-19922
LOWpublished 2026-08-16 01:17 UTC · 2 days ago · modified 2026-08-17 16:16 UTC
2.0
CVSS / 10
// description
A security flaw has been discovered in code-projects Online Shopping System 1.0. Affected by this issue is some unknown functionality of the file /checkout.php. Performing a manipulation of the argument amount_1 results in cross site scripting. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks.
// weaknesses (CWE)
- CWE-79
- CWE-94