Unrated severityNVD Advisory· Published Jun 29, 2026· Updated Jun 29, 2026
SourceCodester Simple Food Ordering System cart.php logic error
CVE-2026-13571
Description
A flaw has been found in SourceCodester Simple Food Ordering System 1.0. The affected element is an unknown function of the file /cart.php. Executing a manipulation of the argument item_price can lead to business logic errors. The attack may be performed from remote. The exploit has been published and may be used.
Patches
Vulnerability mechanics
References
6- github.com/ogh-bnz/Simple-Food-Ordering-System/blob/main/Simple-Food-Ordering-System-Price-Manipulation.mdmitreexploit
- vuldb.com/cve/CVE-2026-13571mitrethird-party-advisory
- vuldb.com/submit/844355mitrethird-party-advisory
- vuldb.com/vuln/374579mitrevdb-entrytechnical-description
- vuldb.com/vuln/374579/ctimitresignaturepermissions-required
- www.sourcecodester.commitreproduct
News mentions
0No linked articles in our index yet.