Isshue by Bdtask HTML Injection Vulnerability

Vulnerability

A HTML injection vulnerability has been identified in Isshue by Bdtask, an eCommerce platform. This issue arises from inadequate validation of user input, allowing for HTML injection by sending a POST request to '/category_product_search' with a crafted 'product_name' parameter.

Impact

Exploitation of this vulnerability allows for HTML injection, which could be used to manipulate the way content is displayed or to execute malicious scripts in the context of the user's browser.

Added: Jan 20, 2026, 12:23 PM
Updated: Jan 20, 2026, 12:23 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.7
exploitability
6.6
remediation
0.0
relevance
2.1
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.