← Back to CVE search

CVE-2026-9448

code-projects Employee Management System

Description

A vulnerability was determined in code-projects Employee Management System 1.0. This affects an unknown function of the file /applyleave.php. Executing a manipulation of the argument ID can lead to cross site scripting. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.

CVSS 4.3EPSS 0.336%Risk 0.44
View source
Published
2026-05-25 11:16:18
Affected versions
==1.0
Type
Web application
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N