CVE-2025-56276
16.09.2025, 14:15
code-projects Food Ordering Review System 1.0 is vulnerable to Cross Site Scripting (XSS) in the registration function. An attacker enters malicious JavaScript code as a username, which triggers the XSS vulnerability when the admin views user information, resulting in the disclosure of the admin's cookie information.
| Vendor | Product | Version |
|---|---|---|
| carmelo | food_ordering_review_system | 1.0 |
𝑥
= Vulnerable software versions