CVE-2026-4319: code-projects Simple Food Order System add-item.php sql injection
A vulnerability was identified in code-projects Simple Food Order System 1.0. Affected by this vulnerability is an unknown functionality of the file /routers/add-item.php. Such manipulation of the argument price leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-4319?
The severity of CVE-2026-4319 is classified as high due to the potential for SQL injection attacks.
How do I fix CVE-2026-4319?
To fix CVE-2026-4319, validate and sanitize all user input in the add-item.php file to prevent SQL injection.
What systems are affected by CVE-2026-4319?
CVE-2026-4319 affects version 1.0 of the code-projects Simple Food Order System.
What type of vulnerability is CVE-2026-4319?
CVE-2026-4319 is classified as an SQL injection vulnerability.
Can CVE-2026-4319 lead to data compromise?
Yes, CVE-2026-4319 can lead to unauthorized access and potential data compromise through SQL injection.