CVE-2026-0642: projectworlds House Rental and Property Listing complaint.php cross site scripting
A vulnerability was detected in projectworlds House Rental and Property Listing 1.0. This issue affects some unknown processing of the file /app/complaint.php. The manipulation of the argument Name results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0642?
CVE-2026-0642 has a high severity due to the potential for remote cross-site scripting attacks.
How do I fix CVE-2026-0642?
To fix CVE-2026-0642, sanitize and validate all input data in the /app/complaint.php file to prevent XSS vulnerabilities.
Who is affected by CVE-2026-0642?
Users of version 1.0 of Projectworlds House Rental and Property Listing software are affected by CVE-2026-0642.
Can CVE-2026-0642 be exploited remotely?
Yes, CVE-2026-0642 can be exploited remotely, making it crucial for users to apply security patches immediately.
What type of vulnerability is CVE-2026-0642?
CVE-2026-0642 is a cross-site scripting (XSS) vulnerability.