A vulnerability described as problematic has been identified in SourceCodester Doctor Appointment System 1.0. Affected by this issue is some unknown functionality of the file /register.php of the component Sign Up Page. Executing a manipulation of the argument Email can lead to cross site scripting.

This vulnerability is tracked as CVE-2026-3302. The attack can be launched remotely. Moreover, an exploit is present.