CVE-2026-38939 PUBLISHED

Assigner: mitre
Reserved: 06.04.2026 Published: 30.04.2026 Updated: 30.04.2026

Cross Site Scripting vulnerability in andrewtch88 mvc-ecommerce v.1.0 allows a remote attacker to execute arbitrary code and obtain sensitive information via the product_catalogue.php component

Product Status

Vendor n/a
Product n/a
Versions
  • Version n/a is affected

References

Problem Types

  • n/a text