CVE-2026-93977
A vulnerability was determined in code-projects Assessment Management 1.0. Affected by this vulnerability is an unknown functionality of the file lecturer/add-single-mark.php. This manipulation of the argument mark causes cross site scripting. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.
- Published Sep 20, 2026
- CVSS 2.0 low
- 0.3% chance of exploitation in the next 30 days (EPSS)