Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 29 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 29 Jun 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in SourceCodester Inventory Management System 1.0. Impacted is an unknown function of the file /api/users_handler.php of the component User Registration Endpoint. Performing a manipulation of the argument full_name results in cross site scripting. The attack is possible to be carried out remotely. The exploit is now public and may be used. | |
| Title | SourceCodester Inventory Management System User Registration Endpoint users_handler.php cross site scripting | |
| First Time appeared |
Sourcecodester
Sourcecodester inventory Management System |
|
| Weaknesses | CWE-79 CWE-94 |
|
| CPEs | cpe:2.3:a:sourcecodester:inventory_management_system:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Sourcecodester
Sourcecodester inventory Management System |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-29T13:57:51.853Z
Reserved: 2026-06-28T18:31:28.618Z
Link: CVE-2026-13570
Updated: 2026-06-29T13:57:47.958Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-29T18:00:05Z