CVE-2025-63892

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
18/11/2025
Last modified:
20/11/2025

Description

A vulnerability was determined in SourceCodester Student Grades Management System 1.0. Affected is the function create_classroom of the file /classroom.php of the component My Classrooms Management Page. This manipulation of the argument name/description causes stored cross site scripting.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:remyandrade:student_grades_management_system:1.0:*:*:*:*:*:*:*