CVE-2026-86238 | projectworlds Online Examination System 1.0 Feedback Form feedback.php Name/Subject cross site scripting
A vulnerability, which was classified as problematic, was found in projectworlds Online Examination System 1.0. The affected element is an unknown function of the file feedback.php of the component Feedback Form. Executing a manipulation of the argument Name/Subject can lead to cross site scripting.
The identification of this vulnerability is CVE-2026-86238. The attack may be launched remotely. Furthermore, there is an exploit available.