CVE-2025-60302EPSS p11.9%

CVE-2025-60302CVE-2025-60302

fabian / client_details_system

Description

code-projects Client Details System 1.0 is vulnerable to Cross Site Scripting (XSS). When adding customer information, the client details system fills in malicious JavaScript code in the username field.

Scoring

CVSS 6.1 ()
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS0.21% probability of exploitation · percentile 11.9% · 2026-08-18T12:04:07Z
Last modified2026-07-05
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.