CVE-2026-95957
SourceCodester Smart Attendance System with QR Code Scanner Self-Registration student_signup.php prepend cross site scripting
CVSS Score
4.3
EPSS Score
0.0%
EPSS Percentile
0th
A vulnerability was found in SourceCodester Smart Attendance System with QR Code Scanner 1.0. This issue affects the function prepend of the file student_signup.php of the component Self-Registration. Performing a manipulation of the argument full_name results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
| CWE | CWE-79 CWE-94 |
| Vendor | sourcecodester |
| Product | smart attendance system with qr code scanner |
| Published | Sep 23, 2026 |
Stay Ahead of the Next One
Get instant alerts for sourcecodester smart attendance system with qr code scanner
Be the first to know when new medium vulnerabilities affecting sourcecodester smart attendance system with qr code scanner are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N/E:P/RL:X/RC:R Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Affected Versions
SourceCodester / Smart Attendance System with QR Code Scanner
1.0
References
vuldb.com: https://vuldb.com/vuln/408556 vuldb.com: https://vuldb.com/vuln/408556/cti vuldb.com: https://vuldb.com/cve/CVE-2026-95957 vuldb.com: https://vuldb.com/submit/953379 github.com: https://github.com/Jack-MRJ/Smart-Attendance-System-with-QR-Code-Scanner sourcecodester.com: https://www.sourcecodester.com/
Credits
๐ jinxing (VulDB User)