CVE-2026-94033

A vulnerability has been found in SourceCodester Drug Recommendation System 1.0. This vulnerability affects unknown code of the file /drug_recommender/Admin/add_user of the component User Management. Such manipulation of the argument txtname/txtemail/txtpassword leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

  • Published Sep 20, 2026
  • CVSS 2.0 low
  • 0.3% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-94033 at the National Vulnerability Database