Unrated severityNVD Advisory· Published Jul 8, 2026· Updated Jul 9, 2026
code-projects Online Food Order System edit_food_items.php sql injection
CVE-2026-15135
Description
A security flaw has been discovered in code-projects Online Food Order System 1.0. This affects an unknown part of the file /edit_food_items.php. The manipulation of the argument update results in sql injection. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks.
Affected products
1- Range: 1.0
Patches
Vulnerability mechanics
References
6- github.com/susususua-AI/CVE/issues/1mitreexploitissue-tracking
- vuldb.com/cve/CVE-2026-15135mitrethird-party-advisory
- vuldb.com/submit/851065mitrethird-party-advisory
- code-projects.orgmitreproduct
- vuldb.com/vuln/376951mitrevdb-entrytechnical-description
- vuldb.com/vuln/376951/ctimitresignaturepermissions-required
News mentions
0No linked articles in our index yet.