Medium severity4.3NVD Advisory· Published Jun 8, 2026· Updated Jun 9, 2026
CVE-2026-11518
CVE-2026-11518
Description
A vulnerability was identified in SourceCodester Inventory System 1.0. Affected is an unknown function of the file /users.php of the component User Management Page. The manipulation of the argument fullname/username leads to cross site scripting. The attack is possible to be carried out remotely. The exploit is publicly available and might be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: = 1.0
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.