PT-2026-35356 · Code Projects · Chat System

C4Ttr4Ck

·

Published

2026-04-27

·

Updated

2026-04-27

·

CVE-2026-7090

CVSS v3.1

2.4

Low

AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N
A vulnerability was detected in code-projects Chat System 1.0. This affects an unknown function of the file /admin/send message.php of the component Chat Interface. The manipulation of the argument msg results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.

Exploit

Fix

Code Injection

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-7090

Affected Products

Chat System