CVE-2026-3763General(carmelo / simple_flight_ticket_booking_system)

LOWCVSS 6.1 · MEDIUM

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was found in code-projects Simple Flight Ticket Booking System 1.0. The affected element is an unknown function of the file showhistory.php. The manipulation results in cross site scripting. It is possible to launch the attack remotely. The exploit has been made public and could be used.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-79CWE-94

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • simple_flight_ticket_booking_system

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • 3 total mentions across 1 day

Affected systems

Vendors
Products
simple_flight_ticket_booking_system

1 version affected across 1 product

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-03-08: 3Technical Details · 2026-03-08: 203-08
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-3763 Cross-Site Scripting in Simple Flight Ticket Booking System 1.0 via showhistory.php https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-3763

    Post summary

    The text announces CVE-2026-3763, a Cross‑Site Scripting vulnerability in Simple Flight Ticket Booking System 1.0 affecting showhistory.php, without providing PoC, exploit, or patch information.

    0001043
    4.0K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-3763 A vulnerability was found in code-projects Simple Flight Ticket Booking System 1.0. The affected element is an unknown function of the file showhistory.php. The manipul… https://www.cve.org/CVERecord?id=CVE-2026-3763

    Post summary

    The post briefly notes CVE‑2026‑3763 for a simple flight booking system but offers no PoC, exploit, patch, or technical details, making it a low‑confidence general mention.

    0000074
    56.6K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    General

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-3763 - code-projects Simple Flight Ticket Booking System showhistory.php cross site scripting Intel Report: https://ift.tt/FvynDu0

    Post summary

    The alert cites CVE-2026-3763 as an XSS flaw in a flight booking system's showhistory.php, but provides no PoC, exploit code, active use, or mitigation details.

    0000025
    347 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appcarmelosimple_flight_ticket_booking_system1.0--

Explore more