VYPR

Food Ordering System

by Code Projects

CVEs (9)

  • CVE-2026-26713CriMar 2, 2026
    risk 0.64cvss 9.8epss 0.00

    code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/routers/cancel-order.php.

  • CVE-2026-26712CriMar 2, 2026
    risk 0.64cvss 9.8epss 0.00

    code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/view-ticket-admin.php.

  • CVE-2026-26711CriMar 2, 2026
    risk 0.64cvss 9.8epss 0.00

    code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/view-ticket.php.

  • CVE-2026-26710CriMar 2, 2026
    risk 0.64cvss 9.8epss 0.00

    code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/routers/edit-orders.php.

  • CVE-2025-8248HigJul 28, 2025
    risk 0.47cvss 7.3epss 0.00

    A vulnerability classified as critical was found in code-projects Online Ordering System 1.0. This vulnerability affects unknown code of the file /signup.php. The manipulation of the argument firstname leads to sql injection. The attack can be initiated remotely. The exploit has…

  • CVE-2025-56280MedSep 16, 2025
    risk 0.35cvss 5.4epss 0.00

    code-projects Food Ordering Review System 1.0 is vulnerable to Cross Site Scripting (XSS) in the area where users submit reservation information.

  • CVE-2025-56276MedSep 16, 2025
    risk 0.35cvss 5.4epss 0.00

    code-projects Food Ordering Review System 1.0 is vulnerable to Cross Site Scripting (XSS) in the registration function. An attacker enters malicious JavaScript code as a username, which triggers the XSS vulnerability when the admin views user information, resulting in the…

  • CVE-2025-12315MedOct 27, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was determined in code-projects Food Ordering System 1.0. This affects an unknown function of the file /admin/menu.php. Executing a manipulation of the argument itemPrice can lead to sql injection. The attack can be executed remotely. The exploit has been…

  • CVE-2025-12314MedOct 27, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was found in code-projects Food Ordering System 1.0. The impacted element is an unknown function of the file /admin/deleteitem.php. Performing a manipulation of the argument itemID results in sql injection. Remote exploitation of the attack is possible. The…