Ghostwire

CVE-2026-7089: A security vulnerability has been detected in code-projects Home Service System 1.0. The impacted element is an unknown...

MEDIUM CVSS 4.3 Exploit Available 1 PoC

Published: April 27, 2026 | Last Modified: April 27, 2026

Description

A security vulnerability has been detected in code-projects Home Service System 1.0. The impacted element is an unknown function of the file /booking.php of the component Appointment Booking. The manipulation of the argument fname/lname leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Proof-of-Concept Exploits (1)

References