A vulnerability was detected in code-projects Online Food Order System 1.0. The affected element is an unknown function of the file edit_food_items.php. Performing a manipulation of the argument dnam…
Low CVSS 3.5
Summary
A vulnerability was detected in code-projects Online Food Order System 1.0. The affected element is an unknown function of the file edit_food_items.php. Performing a manipulation of the argument dname results in cross site scripting. Remote exploitation of the attack is possible. The exploit is now public and may be used.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://code-projects.org/
- https://github.com/zzzxc643/CVE1/blob/main/project1/vul6.md
- https://vuldb.com/cve/CVE-2026-19916
- https://vuldb.com/submit/870863
- https://vuldb.com/vuln/390166
- https://vuldb.com/vuln/390166/cti
Timeline
- nvd_ingest NVD