VYPR
Low severity3.5NVD Advisory· Published Sep 20, 2026

CVE-2026-94034

CVE-2026-94034

Description

A vulnerability was found in SourceCodester Drug Recommendation System 1.0. This issue affects some unknown processing of the file /drug_recommender/Admin/change_password of the component Password Change. Performing a manipulation of the argument txtoldpassword/txtnewpassword results in cross site scripting. The attack can be initiated remotely. The exploit has been made public and could be used.

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.