Unrated severityNVD Advisory· Published Jul 5, 2026· Updated Jul 6, 2026
SourceCodester Multi-Vendor Online Grocery Management System Master.php cancel_order improper authorization
CVE-2026-14693
Description
A flaw has been found in SourceCodester Multi-Vendor Online Grocery Management System 1.0. Affected by this vulnerability is the function cancel_order of the file classes/Master.php. Executing a manipulation can lead to improper authorization. The attack may be performed from remote. The exploit has been published and may be used.
Affected products
1- Range: = 1.0
Patches
Vulnerability mechanics
References
6- github.com/lee945/cve/issues/4mitreexploitissue-tracking
- vuldb.com/cve/CVE-2026-14693mitrethird-party-advisory
- vuldb.com/submit/846833mitrethird-party-advisory
- vuldb.com/vuln/376289mitrevdb-entrytechnical-description
- vuldb.com/vuln/376289/ctimitresignaturepermissions-required
- www.sourcecodester.commitreproduct
News mentions
0No linked articles in our index yet.