CVE-2026-15596: SourceCodester Class and Exam Timetabling System subject.php cross site scripting
Published Jul 13, 2026
·Updated
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is an unknown function of the file /subject.php. Such manipulation of the argument subject leads to cross site scripting. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
Affected Software
1 affected component
Sourcecodester Class and Exam Timetabling System=1.0
Event History
Jul 13, 2026
CVE Published
via MITRE·09:30 PM
Data Sourced
via MITRE·09:30 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:16 PM
DescriptionSeverityWeakness
Mar 29, 58502
Event
via NVD·11:57 PM
Frequently Asked Questions
1
What is the severity of CVE-2026-15596?
CVE-2026-15596 has a medium severity rating of 4.3.
2
What type of vulnerability is CVE-2026-15596?
CVE-2026-15596 is a cross site scripting (XSS) vulnerability.
3
How do I fix CVE-2026-15596?
To fix CVE-2026-15596, validate and sanitize user input in the subject.php file.
4
Can CVE-2026-15596 be exploited remotely?
Yes, CVE-2026-15596 can be exploited remotely by manipulating the subject argument.
5
Which software is affected by CVE-2026-15596?
CVE-2026-15596 affects the SourceCodester Class and Exam Timetabling System version 1.0.