Cross Site Scripting vulnerability in Hostel Management System v2.1 allows an attacker to execute arbitrary code via a crafted payload to the Guardian name, Guardian relation, complimentary address, city, permanent address, and city parameters in the Book Hostel & Room Details page.
| Software | From | Fixed in |
|---|---|---|
| phpgurukul / hostel_management_system | 2.1 | 2.1.x |