Description
A security vulnerability has been detected in SourceCodester Leave Application System 1.0. Affected by this issue is some unknown functionality of the component User Management Handler. Such manipulation leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.
Problem types
Product status
Timeline
| 2026-03-31: | Advisory disclosed |
| 2026-03-31: | VulDB entry created |
| 2026-03-31: | VulDB entry last update |
Credits
Hemant Raj Bhati (VulDB User)
References
vuldb.com/vuln/354345 (VDB-354345 | SourceCodester Leave Application System User Management cross site scripting)
vuldb.com/vuln/354345/cti (VDB-354345 | CTI Indicators (IOB, IOC, TTP))
vuldb.com/submit/780417 (Submit #780417 | SourceCodester Leave Application System in PHP and SQLite3 1.0 Cross Site Scripting)
medium.com/...s-in-php-leave-application-system-3260c881a1fa
www.sourcecodester.com/