CVE-2026-5826
MEDIUMcode-projects Simple IT Discussion Forum edit-category.php cross site scripting
Title source: cnaDescription
A flaw has been found in code-projects Simple IT Discussion Forum 1.0. This issue affects some unknown processing of the file /edit-category.php. Executing a manipulation of the argument Category can lead to cross site scripting. The attack can be launched remotely. The exploit has been published and may be used.
Scores
CVSS v3
4.3
EPSS
0.0001
EPSS Percentile
1.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Details
CWE
CWE-79
CWE-94
Status
published
Products (1)
code-projects/Simple IT Discussion Forum
1.0
Published
Apr 09, 2026
Tracked Since
Apr 09, 2026