CVE-2026-19998

A weakness has been identified in code-projects Online Shopping System 1.0. Impacted is an unknown function of the file offersmail.php. Executing a manipulation of the argument email can lead to cross site scripting. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-17 08:16

Updated : 2026-08-20 12:48


NVD link : CVE-2026-19998

Mitre link : CVE-2026-19998

CVE.ORG link : CVE-2026-19998


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CWE-94

Improper Control of Generation of Code ('Code Injection')