Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 06 Apr 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 06 Apr 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /admin/admin_feature.php of the component Add Product Page. The manipulation of the argument product_name results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used. | |
| Title | code-projects Online Shoe Store Add Product admin_feature.php cross site scripting | |
| First Time appeared |
Code-projects
Code-projects online Shoe Store |
|
| Weaknesses | CWE-79 CWE-94 |
|
| CPEs | cpe:2.3:a:code-projects:online_shoe_store:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Code-projects
Code-projects online Shoe Store |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-06T18:32:40.211Z
Reserved: 2026-04-05T20:42:08.492Z
Link: CVE-2026-5647
Updated: 2026-04-06T18:32:36.176Z
Status : Deferred
Published: 2026-04-06T11:17:03.547
Modified: 2026-04-29T01:00:01.613
Link: CVE-2026-5647
No data.
OpenCVE Enrichment
Updated: 2026-04-06T21:32:53Z