Description
A vulnerability was detected in pbrong hrms 1.0.1. The affected element is the function UpdateRecruitmentById of the file /handler/recruitment.go. The manipulation results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.
Problem types
Product status
Timeline
| 2026-01-18: | Advisory disclosed |
| 2026-01-18: | VulDB entry created |
| 2026-01-18: | VulDB entry last update |
Credits
Guozhao Liao (VulDB User)
References
vuldb.com/?id.341755 (VDB-341755 | pbrong hrms recruitment.go UpdateRecruitmentById cross site scripting)
vuldb.com/?ctiid.341755 (VDB-341755 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.736510 (Submit #736510 | Pbrong hrms 1.0.1 Stored Cross Site Scripting Vulnerability)
github.com/TheLiao233/cve/issues/1