CVE-2026-86216: Code-Projects Hotel And Tourism Reservation In PHP

Medium severity, CVSS 4.3. EPSS: 0.5% chance of exploitation in the next 30 days.

A security vulnerability has been detected in code-projects Hotel and Tourism Reservation in PHP 1.0. This impacts an unknown function of the file /ht/details.php. The manipulation of the argument room leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.

Affected products

  • Code-Projects Hotel And Tourism Reservation In PHP: version 1.0 only

Published 2026-09-06. Last modified 2026-09-08.