A reflected Cross-Site Scripting (XSS) vulnerability in School Management System by mahmoudai1 allows unauthenticated remote attackers to execute arbitrary JavaScript in victim's browsers via the uns…
Medium CVSS 6.1
Summary
A reflected Cross-Site Scripting (XSS) vulnerability in School Management System by mahmoudai1 allows unauthenticated remote attackers to execute arbitrary JavaScript in victim's browsers via the unsanitized type parameter in register.php.
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://github.com/mahmoudai1/school-management-system
- https://github.com/mahmoudai1/school-management-system/blob/main/register.php
- https://github.com/menevarad007/CVE-2026-37750
- https://github.com/menevarad007/CVE-2026-37750
Timeline
- nvd_ingest NVD