CVE-2026-19209: SourceCodester Photo Share Website index.php home cross site scripting
A flaw has been found in SourceCodester Photo Share Website 1.0. The affected element is an unknown function of the file /social/index.php?page=home. This manipulation of the argument Comment causes cross site scripting. The attack may be initiated remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-19209?
The severity of CVE-2026-19209 is classified as low with a score of 3.5.
How do I fix CVE-2026-19209?
To fix CVE-2026-19209, validate and sanitize user inputs to prevent cross-site scripting in the affected components.
What type of attack does CVE-2026-19209 enable?
CVE-2026-19209 enables a cross-site scripting (XSS) attack that can be initiated remotely.
Where is the vulnerability located in CVE-2026-19209?
The vulnerability is located in the file /social/index.php within the SourceCodester Photo Share Website.
What impacts does CVE-2026-19209 have on security?
CVB-2026-19209 can allow an attacker to execute arbitrary scripts in the context of the user's browser.