Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 29 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 29 Jun 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security flaw has been discovered in code-projects Online Music Site 1.0. This affects an unknown part of the file /Frontend/Feedback.php of the component POST Request Handler. The manipulation of the argument fname/femail/faddress/fmessage results in cross site scripting. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks. | |
| Title | code-projects Online Music Site POST Request Feedback.php cross site scripting | |
| First Time appeared |
Code-projects
Code-projects online Music Site |
|
| Weaknesses | CWE-79 CWE-94 |
|
| CPEs | cpe:2.3:a:code-projects:online_music_site:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Code-projects
Code-projects online Music Site |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-29T14:02:17.011Z
Reserved: 2026-06-28T18:19:14.734Z
Link: CVE-2026-13567
Updated: 2026-06-29T14:01:59.511Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-29T18:00:05Z