Description
A vulnerability was found in SourceCodester Customer Review App 1.0. Affected by this vulnerability is the function add_review/save_review/get_all_reviews of the file review_app.py. Performing a manipulation of the argument name/comment results in denial of service. The attack requires a local approach. The exploit has been made public and could be used.
Problem types
Product status
Timeline
| 2026-05-31: | Advisory disclosed |
| 2026-05-31: | VulDB entry created |
| 2026-05-31: | VulDB entry last update |
Credits
ameenkbrd (VulDB User)
References
vuldb.com/vuln/367588 (VDB-367588 | SourceCodester Customer Review App review_app.py get_all_reviews denial of service)
vuldb.com/vuln/367588/cti (VDB-367588 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/cve/CVE-2026-10295 (CVE-2026-10295 | CVE Analysis and Report)
vuldb.com/submit/826530 (Submit #826530 | SourceCodester (razormist) Customer Review App Using Tkinter in Python 1.0 other)
pastebin.com/Ud5vaGp6
www.sourcecodester.com/