A vulnerability was found in code-projects Chat System 1.0 and classified as problematic. This affects an unknown function of the file /admin/send_message.php of the component Chat Interface. The manipulation of the argument msg results in cross site scripting.

This vulnerability is cataloged as CVE-2026-7090. The attack may be launched remotely. Furthermore, there is an exploit available.