Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Hacktwo

#50283of 54,899
5Total CVSS
Vulnerabilities · 1
PT-2026-61077
5.0
2026-07-19
Itsourcecode · Best Courier Management System · CVE-2026-16229
**Name of the Vulnerable Software and Affected Versions** itsourcecode Courier Management System versions prior to 1.1 **Description** A flaw in the `/index.php` endpoint allows remote attackers to perform cross-site scripting (XSS) by manipulating the `page` argument. Cross-site scripting is a technique where malicious scripts are injected into trusted websites. **Recommendations** Update itsourcecode Courier Management System to a version newer than 1.0. As a temporary workaround, restrict access to the `/index.php` endpoint or sanitize the `page` argument to prevent script injection.