Filtered by vendor Alandsilva26 Subscriptions
Filtered by product Hotel-management-php Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-65132 1 Alandsilva26 1 Hotel-management-php 2026-04-16 6.1 Medium
alandsilva26 hotel-management-php 1.0 is vulnerable to Cross Site Scripting (XSS) in /public/admin/edit_room.php which allows an attacker to inject and execute arbitrary JavaScript via the room_id GET parameter.