CVE-2026-7095
MEDIUM
NVD
CVSS Score
4.3
Severity
MEDIUM
Published
Apr 27, 2026
Vendor
unknown
Description
A vulnerability was identified in code-projects Employee Management System 1.0. This affects an unknown part of the file 370project/edit.php. The manipulation of the argument ID leads to cross site scripting. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.