CVE-2026-90795

A vulnerability was determined in itsourcecode Loan Management System 1.0. The impacted element is an unknown function of the file navbar.php. Executing a manipulation of the argument page can lead to cross site scripting. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.

  • Published Sep 14, 2026
  • CVSS 2.1 low
  • 0.5% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-90795 at the National Vulnerability Database