CVE-2026-5647General

LOWCVSS 1.9 · LOW

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was detected in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /admin/admin_feature.php of the component Add Product Page. The manipulation of the argument product_name results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-79CWE-94

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 4 mentions across 1 observed day

What's happening

  • Technical details provided in 3 signals
  • General: 3 classified signals
  • Disclosure: 1 classified signal
  • 4 total mentions across 1 day

Deep dive

Activity timeline4 mentions / 1d
01234Mentions · 2026-04-06: 4Technical Details · 2026-04-06: 304-06
Signal classification2 categories
General
375.0%
Disclosure
125.0%
Referenced assets4 URLs
Full discourse4 posts
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    General

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-5647 - code-projects Online Shoe Store Add Product admin_feature.php cross site scripting Intel Report: https://ift.tt/Zi0ORyr

    Post summary

    A brief alert highlighting a CVE-2026-5647 XSS vulnerability in an online shoe store’s admin feature, accompanied by a link to an Intel report.

    0000034
    281 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-5647 Cross-Site Scripting in code-projects Online Shoe Store 1.0 Add Product Page https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-5647

    Post summary

    A Cross‑Site Scripting vulnerability (CVE‑2026‑5647) has been disclosed in the Add Product Page of code‑projects Online Shoe Store 1.0, as documented on vulmon.com.

    0000041
    4.0K followersView on X
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-5647 A vulnerability was detected in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /admin/admin_feature.php of the component Add Product Page… https://www.cve.org/CVERecord?id=CVE-2026-5647 ----- Traducción: CVE-2026-5647 Se … http://infoflow.cloud`

    Post summary

    The note reports CVE-2026-5647 impacting a file in the Online Shoe Store 1.0, linking to the CVE record, but offers no PoC, exploit, active use, patch, or debunking information.

    0000031
    67 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-5647 A vulnerability was detected in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /admin/admin_feature.php of the component Add Product Page… https://www.cve.org/CVERecord?id=CVE-2026-5647

    Post summary

    A brief notice that CVE‑2026‑5647 was found in a file of an online shoe store, but no further technical or operational details are supplied.

    00000248
    57.0K followersView on X

Explore more