PT-2025-48406 · Jairiidriss · Restaurantwebsite

Dream123

·

Published

2025-12-01

·

Updated

2025-12-01

·

CVE-2025-13802

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions jairiidriss RestaurantWebsite versions prior to e7911f12d035e8e2f9a75e7a28b59e4ef5c1d654
Description A flaw exists in jairiidriss RestaurantWebsite, specifically within the Make a Reservation component. Manipulation of the selected date argument can lead to cross site scripting. This issue can be exploited remotely. The exploit has been publicly disclosed. The product uses continuous delivery with rolling releases, and no specific version details for affected or updated releases are available. The vendor was notified of the issue but did not respond.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2025-13802

Affected Products

Restaurantwebsite