A stored Cross-Site Scripting (XSS) vulnerability was...
Moderate severity
Unreviewed
Published
Sep 26, 2024
to the GitHub Advisory Database
•
Updated Sep 27, 2024
Description
Published by the National Vulnerability Database
Sep 26, 2024
Published to the GitHub Advisory Database
Sep 26, 2024
Last updated
Sep 27, 2024
A stored Cross-Site Scripting (XSS) vulnerability was identified in Projectworld Online Voting System 1.0 that occurs when an account is registered with a malicious javascript payload. The payload is stored and subsequently executed in the voter.php and profile.php pages whenever the account information is accessed.
References