Skip to main content

Vendor/product archive

oretnom23 / online_food_ordering_system CVEs

Beta · best-effort

29 CVEs tagged to oretnom23 / online_food_ordering_system9 Critical, 8 High, 11 Medium, 1 Low, 0 Unrated.

CVE-2026-30534

Published Mar 27, 2026

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in admin/manage_category.php via the "id" parameter.

CVSS 8.3 · High
evidence mentions
1
Buzz score
16.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-30533

Published Mar 27, 2026

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the admin/manage_product.php file via the "id" parameter.

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
16.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-30532

Published Mar 27, 2026

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the admin/view_product.php file via the "id" parameter.

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
16.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-30531

Published Mar 27, 2026

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the Actions.php file (specifically the save_category action). The application fails to p…

CVSS 8.8 · High
evidence mentions
1
Buzz score
16.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-30530

Published Mar 27, 2026

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the Actions.php file (specifically the save_customer action). The application fails to p…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
16.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-30529

Published Mar 27, 2026

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the Actions.php file (specifically the save_user action). The application fails to prope…

CVSS 8.8 · High
evidence mentions
1
Buzz score
16.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-30527

Published Mar 27, 2026

A Stored Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the Category management module within the admin panel. The applicati…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
16.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2025-2387

Published Mar 17, 2025

A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been classified as critical. Affected is an unknown function of the file /admin/ajax.php?action…

CVSS 6.9 · Medium
evidence mentions
5
Buzz score
30.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2024-8604

Published Sep 9, 2024

A vulnerability classified as problematic has been found in SourceCodester Online Food Ordering System 2.0. This affects an unknown part of the file index.php of the component Cre…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-0247

Published Jan 5, 2024

A vulnerability classified as critical was found in CodeAstro Online Food Ordering System 1.0. This vulnerability affects unknown code of the file /admin/ of the component Admin P…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2023-30122

Published May 5, 2023

An arbitrary file upload vulnerability in the component /admin/ajax.php?action=save_menu of Online Food Ordering System v2.0 allows attackers to execute arbitrary code via uploadi…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-1432

Published Mar 16, 2023

A vulnerability was found in SourceCodester Online Food Ordering System 2.0 and classified as critical. Affected by this issue is some unknown functionality of the file /fos/admin…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2023-24646

Published Feb 13, 2023

An arbitrary file upload vulnerability in the component /fos/admin/ajax.php of Food Ordering System v2.0 allows attackers to execute arbitrary code via a crafted PHP file.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-0332

Published Jan 17, 2023

A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been classified as critical. Affected is an unknown function of the file admin/manage_user.php.…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2023-0258

Published Jan 12, 2023

A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the componen…

CVSS 2.4 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-0257

Published Jan 12, 2023

A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the fi…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-0256

Published Jan 12, 2023

A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been classified as critical. Affected is an unknown function of the file /fos/admin/ajax.php?ac…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 29 CVEsPage 1 of 2