CVE-2025-60302: XSS
code-projects Client Details System 1.0 is vulnerable to Cross Site Scripting (XSS). When adding customer information, the client details system fills in malicious JavaScript code in the username field.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-60302?
CVE-2025-60302 is considered a high severity vulnerability due to its potential for cross site scripting (XSS) attacks.
How do I fix CVE-2025-60302?
To fix CVE-2025-60302, ensure proper sanitization and validation of user inputs in the username field to prevent malicious scripts from being injected.
What software is affected by CVE-2025-60302?
CVE-2025-60302 affects version 1.0 of the code-projects Client Details System.
What type of vulnerability is CVE-2025-60302?
CVE-2025-60302 is classified as a Cross Site Scripting (XSS) vulnerability.
What are the potential impacts of CVE-2025-60302?
The potential impacts of CVE-2025-60302 include unauthorized access to user data and the execution of malicious scripts in the user's browser.