Sourcecodtester Hospital · Patient Record Management System · CVE-2022-22850
**Name of the Vulnerable Software and Affected Versions**
Sourcecodtester Hospital's Patient Records Management System version 1.0
**Description**
A Stored Cross Site Scripting (XSS) issue exists via the `description` parameter in `room types`. This allows for potential malicious script execution.
**Recommendations**
For version 1.0, consider restricting access to the `room types` feature to minimize the risk of exploitation, and avoid using the `description` parameter in this context until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this issue.