CVE-2021-40909

Publication date

2022-01-24 15:15:05

Family

mitre

State

PUBLISHED

Description

Cross site scripting (XSS) vulnerability in sourcecodester PHP CRUD without Refresh/Reload using Ajax and DataTables Tutorial v1 by oretnom23, allows remote attackers to execute arbitrary code via the first_name, last_name, and email parameters to /ajax_crud.