CVE-2026-11338
LOW SEVERITYCVSS Score & Metrics
Base Score
2.4 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N
Vulnerability Description
A security vulnerability has been detected in SourceCodester Ship Ferry Ticket Reservation System 1.0. Impacted is an unknown function of the file /admin/?page=user/manage_user. The manipulation of the argument Username leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-79
Source
NVD
Vendor
SourceCodester
Product
Ship Ferry Ticket Reservation System
External References
- https://medium.com/@hemantrajbhati5555/stored-cross-site-scripting-stored-xss-in-username-field-leads-to-arbitrary-javascript-execution-cd377841da30
- https://vuldb.com/cve/CVE-2026-11338
- https://vuldb.com/submit/832571
- https://vuldb.com/vuln/368880
- https://vuldb.com/vuln/368880/cti
- https://www.sourcecodester.com/
Discussion (0)
Add Comment
No comments yet. Be the first!