CVE-2026-30567: XSS
Published Mar 27, 2026
·Updated
A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory System 1.0 in the viewproduct.php file via the "limit" parameter. The application fails to sanitize the input, allowing remote attackers to inject arbitrary web script or HTML via a crafted URL.
Affected Software
2 affected components
Sourcecodester Sales and Inventory System=1.0
Ahsanriaz26gmailcom Inventory System=1.0
Event History
Mar 27, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:16 PM
DescriptionSeverityWeaknessAffected Software