QSearchQSearch

CVE-2026-11520

3.5 LOW

A weakness has been identified in SourceCodester Inventory System 1.0

Published: 2026-06-08 · Last updated: 2026-06-09

Severity and scoring

CVSS
3.5 LOW
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
CWE
CWE-79, CWE-94

Description

A weakness has been identified in SourceCodester Inventory System 1.0. Affected by this issue is some unknown functionality of the file header.php. This manipulation causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be used for attacks. Multiple parameters might be affected.

Source: NVD

References

Related CVEs

Same CWE

  • CVE-2025-8444 The Animation Addons for Elementor – GSAP Powered Elementor Addons & Website Templates plugin for WordPress is vulnerable to DOM-Based St... (6.4 MEDIUM)
  • CVE-2026-46518 OpenEMR is a free and open source electronic health records and medical practice management application (7.7 HIGH)
  • CVE-2026-46517 LMDeploy is a toolkit for compressing, deploying, and serving large language models (7.8 HIGH)
  • CVE-2026-46432 LMDeploy is a toolkit for compressing, deploying, and serving large language models (7.8 HIGH)
  • CVE-2026-41003 An attacker able to influence values in RelyingPartyRegistration may be able to run arbitrary code on HTML forms generated by Spring Secu... (7.6 HIGH)