CVE-2026-5705 | code-projects Online Hotel Booking 1.0 Booking Endpoint /booknow.php roomname cross site scripting
A vulnerability was found in code-projects Online Hotel Booking 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /booknow.php of the component Booking Endpoint. Such manipulation of the argument roomname leads to cross site scripting.
This vulnerability is referenced as CVE-2026-5705. It is possible to launch the attack remotely. Furthermore, an exploit is available.