Information Disclosure Vulnerability in SourceCodester Online Clothing Store
CVE-2026-19229

6.9MEDIUM

Key Information:

Vendor
CVE Published:
7 August 2026

What is CVE-2026-19229?

The SourceCodester Online Clothing Store contains a vulnerability within the Dreamweaver Metadata Files located in the /_notes/ directory. This flaw allows unauthorized access to sensitive file and directory information, which could be exploited remotely. The risk is heightened due to public disclosure of the exploit, emphasizing the need for immediate attention to secure the affected components.

Affected Version(s)

Online Clothing Store

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Hemant Raj Bhati (VulDB User)
.