CVE-2026-7401

A vulnerability was detected in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. This vulnerability affects unknown code of the file /index.php?action=register of the component Registration. The manipulation of the argument student_id/full_name/section/username results in cross site scripting. The attack can be launched remotely. The exploit is now public and may be used.
Configurations

No configuration.

History

29 Apr 2026, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-29 20:16

Updated : 2026-04-29 21:16


NVD link : CVE-2026-7401

Mitre link : CVE-2026-7401

CVE.ORG link : CVE-2026-7401


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CWE-94

Improper Control of Generation of Code ('Code Injection')