VYPR

Simple Food Order System

by Code Projects

CVEs (8)

  • CVE-2026-26713CriMar 2, 2026
    risk 0.64cvss 9.8epss 0.00

    code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/routers/cancel-order.php.

  • CVE-2026-26712CriMar 2, 2026
    risk 0.64cvss 9.8epss 0.00

    code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/view-ticket-admin.php.

  • CVE-2026-26711CriMar 2, 2026
    risk 0.64cvss 9.8epss 0.00

    code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/view-ticket.php.

  • CVE-2026-26710CriMar 2, 2026
    risk 0.64cvss 9.8epss 0.00

    code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/routers/edit-orders.php.

  • CVE-2026-5019HigMar 29, 2026
    risk 0.47cvss 7.3epss 0.00

    A security vulnerability has been detected in code-projects Simple Food Order System 1.0. Affected by this vulnerability is an unknown functionality of the file all-orders.php of the component Parameter Handler. The manipulation of the argument Status leads to sql injection. The…

  • CVE-2026-5018HigMar 28, 2026
    risk 0.47cvss 7.3epss 0.00

    A weakness has been identified in code-projects Simple Food Order System 1.0. Affected is an unknown function of the file register-router.php of the component Parameter Handler. Executing a manipulation of the argument Name can lead to sql injection. The attack can be launched…

  • CVE-2026-5017HigMar 28, 2026
    risk 0.47cvss 7.3epss 0.00

    A security flaw has been discovered in code-projects Simple Food Order System 1.0. This impacts an unknown function of the file /all-tickets.php of the component Parameter Handler. Performing a manipulation of the argument Status results in sql injection. The attack can be…

  • CVE-2026-4319HigMar 17, 2026
    risk 0.47cvss 7.3epss 0.00

    A vulnerability was identified in code-projects Simple Food Order System 1.0. Affected by this vulnerability is an unknown functionality of the file /routers/add-item.php. Such manipulation of the argument price leads to sql injection. The attack can be launched remotely. The…