CVE-2026-7222

A vulnerability was determined in code-projects Coaching Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /cims/modules/student/complaint.php of the component Complaint Form Page. This manipulation of the argument Complaint causes cross site scripting. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.
Configurations

No configuration.

History

24 Jul 2026, 08:10

Type Values Removed Values Added
Summary
  • (es) Se determinó una vulnerabilidad en code-projects Coaching Management System 1.0. Afectada por esta vulnerabilidad es una funcionalidad desconocida del archivo /cims/modules/student/complaint.PHP del componente Complaint Form Page. Esta manipulación del argumento Complaint causa cross site scripting. El ataque puede ser iniciado remotamente. El exploit ha sido divulgado públicamente y puede ser utilizado.

28 Apr 2026, 04:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-28 04:16

Updated : 2026-07-24 08:10


NVD link : CVE-2026-7222

Mitre link : CVE-2026-7222

CVE.ORG link : CVE-2026-7222


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CWE-94

Improper Control of Generation of Code ('Code Injection')