A vulnerability labeled as problematic has been found in code-projects Online Shopping System 1.0. Impacted is an unknown function of the file offersmail.php. Executing a manipulation of the argument email can lead to cross site scripting.
This vulnerability appears as CVE-2026-19998. The attack may be performed from remote. In addition, an exploit is available.