CVE-2026-38940
MEDIUM
NVD
CVSS Score
6.1
Severity
MEDIUM
Published
Apr 30, 2026
Vendor
unknown
Description
Cross Site Scripting vulnerability in RafyMrX TOKO-ONLINE-ROTI v.1.0 allows a remote attacker to execute arbitrary code via the detail_produk.php component