PT-2025-48406 · Jairiidriss · Restaurantwebsite
Dream123
·
Published
2025-12-01
·
Updated
2025-12-01
·
CVE-2025-13802
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
jairiidriss RestaurantWebsite versions prior to e7911f12d035e8e2f9a75e7a28b59e4ef5c1d654
Description
A flaw exists in jairiidriss RestaurantWebsite, specifically within the Make a Reservation component. Manipulation of the
selected date argument can lead to cross site scripting. This issue can be exploited remotely. The exploit has been publicly disclosed. The product uses continuous delivery with rolling releases, and no specific version details for affected or updated releases are available. The vendor was notified of the issue but did not respond.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
XSS
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Restaurantwebsite