CVE-2026-93977: Code-Projects Assessment Management
Low severity, CVSS 3.5. EPSS: 0.3% chance of exploitation in the next 30 days.
A vulnerability was determined in code-projects Assessment Management 1.0. Affected by this vulnerability is an unknown functionality of the file lecturer/add-single-mark.php. This manipulation of the argument mark causes cross site scripting. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.
Affected products
- Code-Projects Assessment Management: version 1.0 only
Published 2026-09-20. Last modified 2026-09-24.