Sourcecodester Pharmacy Sales And Inventory System vulnerabilities
30 known vulnerabilities affecting sourcecodester/pharmacy_sales_and_inventory_system.
Total CVEs
30
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH14MEDIUM8LOW8
Vulnerabilities
Page 2 of 2
CVE-2026-7129P4MEDIUMCVSS 4.3v1.02026-04-27
CVE-2026-7129 [MEDIUM] CWE-79 CVE-2026-7129: A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Impacted is
A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Impacted is an unknown function of the file /index.php?page=categories. Performing a manipulation of the argument ID results in cross site scripting. The attack is possible to be carried out remotely. The exploit is now public and may be used.
nvd
CVE-2026-7200P4MEDIUMCVSS 4.3v1.02026-04-28
CVE-2026-7200 [MEDIUM] CWE-79 CVE-2026-7200: A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this is
A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this issue is some unknown functionality of the file /index.php?page=types. Executing a manipulation of the argument ID can lead to cross site scripting. It is possible to launch the attack remotely. The exploit has been published and may be used.
nvd
CVE-2026-10244P4LOWCVSS 3.5v1.02026-06-01
CVE-2026-10244 [LOW] CWE-79 CVE-2026-10244: A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by
A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this vulnerability is the function create_medicine_name of the file /ShowForm/create_medicine_name/main. Performing a manipulation of the argument medicine_name results in cross site scripting. The attack can be initiated remotely. The exploit is now publi
nvd
CVE-2026-10246P4LOWCVSS 3.5v1.02026-06-01
CVE-2026-10246 [LOW] CWE-79 CVE-2026-10246: A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affec
A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects the function create_medicine_presentation of the file /ShowForm/create_medicine_presentation/main. The manipulation of the argument medicine_presentation leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclose
nvd
CVE-2026-10245P4LOWCVSS 3.5v1.02026-06-01
CVE-2026-10245 [LOW] CWE-79 CVE-2026-10245: A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this is
A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this issue is the function create_supplier of the file /ShowForm/create_supplier/main. Executing a manipulation of the argument company_name can lead to cross site scripting. The attack can be launched remotely. The exploit has been published and may be used.
nvd
CVE-2026-10247P4LOWCVSS 3.5v1.02026-06-01
CVE-2026-10247 [LOW] CWE-79 CVE-2026-10247: A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. This vulnerabil
A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. This vulnerability affects the function create_generic_name of the file /ShowForm/create_generic_name/main. The manipulation of the argument generic_name results in cross site scripting. The attack may be launched remotely. The exploit has been made public and could be
nvd
CVE-2026-7390P4LOWCVSS 3.5v1.02026-04-29
CVE-2026-7390 [LOW] CWE-79 CVE-2026-7390: A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. The impacted
A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. The impacted element is the function Customer of the file /index.php?page=customer. The manipulation of the argument Name results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.
nvd
CVE-2026-7269P4LOWCVSS 2.4v1.02026-04-28
CVE-2026-7269 [LOW] CWE-79 CVE-2026-7269: A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected is an
A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected is an unknown function of the file /index.php?page=product. Performing a manipulation of the argument ID results in cross site scripting. It is possible to initiate the attack remotely. The exploit has been made public and could be used.
nvd
CVE-2026-7281P4LOWCVSS 2.4v1.02026-04-28
CVE-2026-7281 [LOW] CWE-79 CVE-2026-7281: A vulnerability was determined in SourceCodester Pharmacy Sales and Inventory System 1.0. The impact
A vulnerability was determined in SourceCodester Pharmacy Sales and Inventory System 1.0. The impacted element is the function supplier of the file /index.php?page=supplier. Executing a manipulation of the argument Name can lead to cross site scripting. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.
cvelistv5nvd
CVE-2026-8136P4LOWCVSS 2.4v1.02026-05-08
CVE-2026-8136 [LOW] CWE-79 CVE-2026-8136: A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects an unk
A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects an unknown part of the file /index.php?page=users. Executing a manipulation of the argument Name can lead to cross site scripting. The attack may be launched remotely. The exploit has been published and may be used.
nvd
← Previous2 / 2