PT-2026-26963 · Code Projects · Simple Food Ordering System

Ahmadmarzouk

·

Published

2026-03-22

·

Updated

2026-03-22

·

CVE-2026-4533

CVSS v3.1

6.3

Medium

AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
A vulnerability was detected in code-projects Simple Food Ordering System 1.0. Affected by this issue is some unknown functionality of the file all-tickets.php. The manipulation of the argument Status results in sql injection. It is possible to launch the attack remotely. The exploit is now public and may be used.

Exploit

Fix

SQL injection

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2026-4533

Affected Products

Simple Food Ordering System