THREAT OPS › Threat News › [NVD] CVE-2026-86238 (MEDIUM 4.3) — A vulnerability was determined in projectworlds Online Examination System 1.0. The affected element is an unknown function of the file feedback.php of the component Feedback Form. Executing a manipulation of the argument Name/Subject can lead to cross site scripting. The attack m
[NVD] CVE-2026-86238 (MEDIUM 4.3) — A vulnerability was determined in projectworlds Online Examination System 1.0. The affected element is an unknown function of the file feedback.php of the component Feedback Form. Executing a manipulation of the argument Name/Subject can lead to cross site scripting. The attack m
CVE-2026-86238 CVSS: 4.3 MEDIUM Published: 2026-09-07T01:16:56.223
A vulnerability was determined in projectworlds Online Examination System 1.0. The affected element is an unknown function of the file feedback.php of the component Feedback Form. Executing a manipulation of the argument Name/Subject can lead to cross site scripting. The attack may be launched remotely. The exploit has been public
Indicators of compromise
- CVE-2026-86238cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-86238