Cross Site Scripting Vulnerability in PHPGurukul Online DJ Booking Management System
CVE-2025-50699
6.1MEDIUM
Key Information:
- Vendor
PHPGurukul
- Vendor
- CVE Published:
- 24 June 2025
What is CVE-2025-50699?
The PHPGurukul Online DJ Booking Management System 2.0 is affected by a Cross Site Scripting (XSS) vulnerability located in the odms/admin/view-user-queries.php file. This flaw allows attackers to inject malicious scripts into web pages viewed by users, potentially leading to unauthorized actions on behalf of the user. Effective measures should be taken to sanitize and validate user inputs to mitigate this risk.