Millhouse-Project 1.414 contains a persistent cross-site scripting vulnerability in the comment submission functionality that allows attackers to inject malicious scripts. Attackers can post comments with embedded JavaScript through the 'content' parameter in add_comment_sql.php to execute arbitrary scripts in victim browsers.
Metrics
Affected Vendors & Products
References
History
Fri, 06 Feb 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Millhouse-Project 1.414 contains a persistent cross-site scripting vulnerability in the comment submission functionality that allows attackers to inject malicious scripts. Attackers can post comments with embedded JavaScript through the 'content' parameter in add_comment_sql.php to execute arbitrary scripts in victim browsers. | |
| Title | thrsrossi Millhouse-Project 1.414 - 'content' Persistent Cross-Site Scripting | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-02-06T16:41:37.075Z
Reserved: 2026-02-06T16:30:57.455Z
Link: CVE-2019-25301
No data.
Status : Received
Published: 2026-02-06T17:16:11.357
Modified: 2026-02-06T17:16:11.357
Link: CVE-2019-25301
No data.
OpenCVE Enrichment
No data.