CVE-2025-14962: code-projects Simple Stock System chatuser.php cross site scripting
A flaw has been found in code-projects Simple Stock System 1.0. The impacted element is an unknown function of the file /market/chatuser.php. This manipulation causes cross site scripting. The attack is possible to be carried out remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-14962?
CVE-2025-14962 is classified as a medium severity vulnerability due to its potential to expose users to cross-site scripting attacks.
How do I fix CVE-2025-14962?
To fix CVE-2025-14962, sanitize user inputs and properly encode outputs in the affected script /market/chatuser.php.
Who is affected by CVE-2025-14962?
CVE-2025-14962 affects users of the Code-projects Simple Stock System version 1.0.
What type of vulnerability is CVE-2025-14962?
CVE-2025-14962 is a cross-site scripting (XSS) vulnerability that allows attackers to inject malicious scripts.
Can CVE-2025-14962 be exploited remotely?
Yes, CVE-2025-14962 can be exploited remotely, enabling attackers to target affected systems over the internet.