Reflected XSS Vulnerability in ProjectsAndPrograms School Management System
CVE-2025-51967
6.1MEDIUM
What is CVE-2025-51967?
The ProjectsAndPrograms School Management System version 1.0 is susceptible to a reflected Cross-site Scripting (XSS) vulnerability due to improper handling of user input in the theme POST parameter. Without adequate input sanitation, attackers can exploit this flaw to insert and execute malicious JavaScript code in the user's browser, potentially compromising user data and application integrity. It is crucial for users and administrators to remain informed and apply security best practices to mitigate risks associated with this vulnerability.
