CVE-2026-36324
Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.
SourceCodester Doctor Appointment System 1.0 is vulnerable to Cross Site Scripting (XSS) due to improper handling of user supplied input in the user registration functionality in register.php.
Published 2026-05-29. Last modified 2026-07-21.