CVE-2026-77391 MEDIUM

CVE-2026-77391: SourceCodester Dynamic Input Field Generator Using HTML, CSS, and PHP cross-site request forgery

Vendor Sourcecodester
Product Dynamic Input Field Generator Using HTML, CSS, and PHP
Weakness CWE-352 · CSRF
Published August 21, 2026
Last update August 21, 2026

CVSS base score

5.3/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P

What the vulnerability does

01Description

A security flaw has been discovered in SourceCodester Dynamic Input Field Generator Using HTML, CSS, and PHP 1.0. This affects an unknown function. The manipulation results in cross-site request forgery. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.

Key dates

02Disclosure timeline

August 21, 2026 CVE published

Related vulnerabilities

04Related CVE