← Back to CVE search

CVE-2026-7295

SourceCodester Pizzafy Ecommerce System

Description

A vulnerability has been found in SourceCodester Pizzafy Ecommerce System 1.0. Affected by this issue is the function save_menu of the file /admin/ajax.php?action=save_menu. Such manipulation of the argument Name leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

CVSS 2.4EPSS 0.20600000000000002%Risk 0.24
View source
Published
2026-04-28 19:37:48
Affected versions
==1.0
Type
Package
Last modified
2026-07-24 08:10:00
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N