Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 20 Sep 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in SourceCodester Drug Recommendation System 1.0. This issue affects some unknown processing of the file /drug_recommender/Admin/change_password of the component Password Change. Performing a manipulation of the argument txtoldpassword/txtnewpassword results in cross site scripting. The attack can be initiated remotely. The exploit has been made public and could be used. | |
| Title | SourceCodester Drug Recommendation System Password Change change_password cross site scripting | |
| First Time appeared |
Sourcecodester
Sourcecodester drug Recommendation System |
|
| Weaknesses | CWE-79 CWE-94 |
|
| CPEs | cpe:2.3:a:sourcecodester:drug_recommendation_system:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Sourcecodester
Sourcecodester drug Recommendation System |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-20T15:00:07.801Z
Reserved: 2026-09-19T17:48:30.104Z
Link: CVE-2026-94034
No data.
Status : Received
Published: 2026-09-20T15:16:30.730
Modified: 2026-09-20T15:16:30.730
Link: CVE-2026-94034
No data.
OpenCVE Enrichment
Updated: 2026-09-20T17:15:17Z