{"id":"CVE-2025-14221","title":"A vulnerability was detected in SourceCodester Online Banking System 1.0","summary":"A vulnerability was detected in SourceCodester Online Banking System 1.0. This impacts an unknown function of the file /?page=user. The manipulation of the argument First Name/Last Name results in cross site scripting. The attack can be …","severity":"low","cvss":3.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N","cwe":["CWE-79","CWE-94"],"vendor":"oretnom23","product":"banking_system","affected":["banking_system = 1.0"],"published":"2025-12-08","updated":"2026-10-07","sourceUpdated":"2026-10-07T20:10:01.970","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-14221","references":[{"url":"https://mega.nz/file/T4hjCagS#87U1JgRHZWzXW2HTpBIG-H9dJ_w9kUERmaaQqJyB5_Q","label":"cna@vuldb.com"},{"url":"https://vuldb.com/?ctiid.334663","label":"cna@vuldb.com"},{"url":"https://vuldb.com/?id.334663","label":"cna@vuldb.com"},{"url":"https://vuldb.com/?submit.701624","label":"cna@vuldb.com"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com"}],"tags":["nvd","exploit-available"],"epss":0.00254,"epssPercentile":0.15472,"exploits":{"github":1,"githubRepos":["https://github.com/fatmatrabelsi17/CVE-2025-14221"],"checkedAt":"2026-10-07T20:47:22.812Z"},"exploitAvailable":true,"ingestedAt":"2026-10-07T20:46:46.750Z","slug":"CVE-2025-14221","body":"## Overview\n\nA vulnerability was detected in SourceCodester Online Banking System 1.0. This impacts an unknown function of the file /?page=user. The manipulation of the argument First Name/Last Name results in cross site scripting. The attack can be launched remotely. The exploit is now public and may be used.\n\n## Affected\n\n- `banking_system = 1.0`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":31,"depthScoreParts":{"impact":19.3,"likelihood":0.1,"exploitation":12,"ransomware":0},"changes":[]}