CVE-2022-1979: Product Show Room Site Project Product Show Room Site

Medium severity, CVSS 4.8. EPSS: 0.6% chance of exploitation in the next 30 days.

A vulnerability was found in SourceCodester Product Show Room Site 1.0. It has been declared as problematic. This vulnerability affects p=contact. The manipulation of the Message textbox with the input <script>alert(1)</script> leads to cross site scripting. The attack can be initiated remotely but requires authentication. Exploit details have been disclosed to the public.

Affected products

Published 2022-06-02. Last modified 2026-06-17.