CVE-2025-56018

Severity
6.1MEDIUM
EPSS
0.0%
top 88.38%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 30

Description

SourceCodester Web-based Pharmacy Product Management System V1.0 is vulnerable to Cross Site Scripting (XSS) in Category Management via the category name field.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7

🔴Vulnerability Details

2
CVEList
CVE-2025-56018: SourceCodester Web-based Pharmacy Product Management System V12025-09-30
GHSA
GHSA-6339-mv7f-5fgx: SourceCodester Web-based Pharmacy Product Management System V12025-09-30
CVE-2025-56018 (MEDIUM CVSS 6.1) | SourceCodester Web-based Pharmacy P | cvebase.io