A security vulnerability has been detected in SourceCodester Simple Online Food Ordering System 1.0. This issue affects some unknown processing of the file /fos/admin/ajax.php?action=add_to_cart. Suc…
High CVSS 7.3
Summary
A security vulnerability has been detected in SourceCodester Simple Online Food Ordering System 1.0. This issue affects some unknown processing of the file /fos/admin/ajax.php?action=add_to_cart. Such manipulation of the argument pid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://github.com/wsx138/cve/issues/4
- https://vuldb.com/cve/CVE-2026-78198
- https://vuldb.com/submit/886037
- https://vuldb.com/vuln/394575
- https://vuldb.com/vuln/394575/cti
- https://www.sourcecodester.com/
Timeline
- nvd_ingest NVD