Low severity2.4NVD Advisory· Published Mar 27, 2026· Updated Apr 29, 2026
CVE-2026-4972
CVE-2026-4972
Description
A security vulnerability has been detected in code-projects Online Reviewer System up to 1.0. Affected is an unknown function of the file /system/system/students/assessments/databank/btn_functions.php. Such manipulation of the argument Description leads to cross site scripting. The attack may be performed from remote. The exploit has been disclosed publicly and may be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=1.0
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.