CVE-2025-12335 | code-projects E-Commerce Website 1.0 supplier_update.php supp_name/supp_address cross site scripting (CNNVD-202510-3919)
A vulnerability, which was classified as problematic, has been found in code-projects E-Commerce Website 1.0. Affected by this vulnerability is an unknown functionality of the file /pages/supplier_update.php. This manipulation of the argument supp_name/supp_address causes cross site scripting.
This vulnerability is handled as CVE-2025-12335. The attack can be initiated remotely. Additionally, an exploit exists.