← Back to CVE search

CVE-2026-7265

SourceCodester Pizzafy Ecommerce System

Description

A security vulnerability has been detected in SourceCodester Pizzafy Ecommerce System 1.0. The affected element is the function Category of the file pizza/index.php?page=category. The manipulation of the argument ID leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.

CVSS 6.3EPSS 0.241%Risk 0.64
View source
Published
2026-04-28 11:16:07
Affected versions
<=1.0
Type
Package
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L