CVE-2025-60304: XSS
Published Oct 9, 2025
·Updated
code-projects Simple Scheduling System 1.0 is vulnerable to Cross Site Scripting (XSS) via the Subject Description field.
Affected Software
2 affected components
Code-projects Simple Scheduling System
Fabian Simple Scheduling System=1.0
Event History
Oct 9, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-60304?
CVE-2025-60304 has been classified with a severity rating that indicates a potential risk due to Cross Site Scripting (XSS).
2
How do I fix CVE-2025-60304?
To remediate CVE-2025-60304, ensure that user input is properly sanitized and validated before being rendered on the web page.
3
What type of vulnerability is CVE-2025-60304?
CVE-2025-60304 is a Cross Site Scripting (XSS) vulnerability affecting the Subject Description field in the Simple Scheduling System.
4
Which software is affected by CVE-2025-60304?
CVE-2025-60304 affects code-projects Simple Scheduling System version 1.0.
5
How is CVE-2025-60304 exploited?
CVE-2025-60304 can be exploited when an attacker injects malicious scripts into the Subject Description input, which can later be executed in the browser of a victim.