CVE-2026-38939 - Andrewtch88 MVC-Ecommerce Cross-Site Scripting Vulnerability
CVE ID :CVE-2026-38939 Published : April 30, 2026, 4:16 p.m. | 25 minutes ago Description :Cross Site Scripting vulnerability in andrewtch88 mvc-ecommerce v.1.0 allows a remote attacker to execute arbitrary code and obtain sensitive information via the product_catalogue.php component Severi
ORIGINAL SOURCE →via CVE Feed Latest
ADVERTISEMENT
⚡ STAY AHEAD
Events like this, convergence-verified across 689 sources, land in your inbox every Sunday. Free.
GET THE SUNDAY BRIEFING →RELATED · cyber
- [CYBER] New Bluekit phishing service includes an AI assistant, 40 templates
- [CYBER] Anthropic Unveils Claude Security to Counter AI-Powered Exploit Surge
- [CYBER] AI Fuels ‘Industrial’ Cybercrime as Time-to-Exploit Shrinks to Hours
- [CYBER] Whats the general consensus on all of these ID verification laws/implementations?
- [CYBER] Copy Fail: New Linux bug enables Root via page‑cache corruption
- [CYBER] CVE-2026-3833 - Gnutls: gnutls: policy bypass due to case-sensitive nameconstraints comparison