CVE-2026-4532: code-projects Simple Food Ordering System Database Backup food.sql file access
A security vulnerability has been detected in code-projects Simple Food Ordering System up to 1.0. Affected by this vulnerability is an unknown functionality of the file /food/sql/food.sql of the component Database Backup Handler. The manipulation leads to files or directories accessible. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used. It is recommended to change the configuration settings.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-4532?
The severity of CVE-2026-4532 is critically high due to unauthorized access to sensitive database backup files.
How do I fix CVE-2026-4532?
To fix CVE-2026-4532, ensure proper access controls are in place to restrict access to the food.sql backup file.
What are the potential impacts of CVE-2026-4532?
The potential impacts of CVE-2026-4532 include data leakage and unauthorized data manipulation through access to the database backup.
Which versions of the Simple Food Ordering System are affected by CVE-2026-4532?
CVE-2026-4532 affects all versions of the Simple Food Ordering System up to and including version 1.0.
Is there a patch available for CVE-2026-4532?
As of now, there is no official patch available for CVE-2026-4532, so immediate mitigation measures should be applied.