PT-2026-48974 · Codeastro · Human Resource Management System

Ashikmd7

·

Published

2026-06-12

·

Updated

2026-06-12

·

CVE-2026-12129

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:N/I:P/A:N
A vulnerability was identified in CodeAstro Human Resource Management System 1.0. Affected by this issue is some unknown functionality of the file /dashboard/add tod of the component Dashboard Interface. The manipulation of the argument todo data leads to cross site scripting. The attack may be initiated remotely. The exploit is publicly available and might be used.

Exploit

Fix

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2026-12129

Affected Products

Human Resource Management System