Unrated severityNVD Advisory· Published Jun 29, 2026· Updated Jun 29, 2026
SourceCodester Inventory Management System User Registration Endpoint users_handler.php cross site scripting
CVE-2026-13570
Description
A vulnerability was detected in SourceCodester Inventory Management System 1.0. Impacted is an unknown function of the file /api/users_handler.php of the component User Registration Endpoint. Performing a manipulation of the argument full_name results in cross site scripting. The attack is possible to be carried out remotely. The exploit is now public and may be used.
Affected products
1- Range: 1.0
Patches
Vulnerability mechanics
References
5- vuldb.com/cve/CVE-2026-13570mitrethird-party-advisory
- vuldb.com/submit/844353mitrethird-party-advisory
- vuldb.com/vuln/374578mitrevdb-entrytechnical-description
- vuldb.com/vuln/374578/ctimitresignaturepermissions-required
- www.sourcecodester.commitreproduct
News mentions
0No linked articles in our index yet.