CVE-2026-19917: code-projects Online Food Order System delete_food_items1.php sql injection
A flaw has been found in code-projects Online Food Order System 1.0. The impacted element is an unknown function of the file deletefooditems1.php. Executing a manipulation of the argument checkbox can lead to sql injection. The attack can be executed remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-19917?
The severity of CVE-2026-19917 is rated as medium with a score of 6.3.
How do I fix CVE-2026-19917?
To fix CVE-2026-19917, ensure input validation and parameterized queries are implemented to prevent SQL injection in delete_food_items1.php.
What type of vulnerability is CVE-2026-19917?
CVE-2026-19917 is classified as an SQL Injection vulnerability.
Can CVE-2026-19917 be exploited remotely?
Yes, CVE-2026-19917 can be exploited remotely through manipulation of the checkbox argument.
Which software is affected by CVE-2026-19917?
CVE-2026-19917 affects version 1.0 of the Code-projects Online Food Order System.