| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-5811 | SourceCodester Online Food Ordering System POST Parameter Actions.php save_product logic error | SourceCodester | Online Food Ordering System | Medium | 5.4 | 2026-04-08 22:15:13 | Deep Dive |
| CVE-2026-5157 | code-projects Online Food Ordering System Order order.php cross site scripting | code-projects | Online Food Ordering System | Medium | 4.3 | 2026-03-30 23:30:18 | Deep Dive |
| CVE-2026-4900 | code-projects Online Food Ordering System localhost.sql privilege escalation | code-projects | Online Food Ordering System | Medium | 5.3 | 2026-03-26 21:56:46 | Deep Dive |
| CVE-2026-4899 | code-projects Online Food Ordering System food.php cross site scripting | code-projects | Online Food Ordering System | Low | 2.4 | 2026-03-26 21:56:43 | Deep Dive |
| CVE-2026-4898 | code-projects Online Food Ordering System contact.php cross site scripting | code-projects | Online Food Ordering System | Medium | 4.3 | 2026-03-26 21:08:07 | Deep Dive |
| CVE-2026-4844 | code-projects Online Food Ordering System Admin Login admin.php sql injection | code-projects | Online Food Ordering System | High | 7.3 | 2026-03-26 04:50:15 | Deep Dive |
| CVE-2026-4841 | code-projects Online Food Ordering System Shopping Cart cart.php sql injection | code-projects | Online Food Ordering System | High | 7.3 | 2026-03-26 04:05:38 | Deep Dive |
| CVE-2026-4472 | itsourcecode Online Frozen Foods Ordering System admin_edit_supplier.php sql injection | itsourcecode | Online Frozen Foods Ordering System | Medium | 6.3 | 2026-03-20 05:02:14 | Deep Dive |
| CVE-2026-4471 | itsourcecode Online Frozen Foods Ordering System admin_edit_employee.php sql injection | itsourcecode | Online Frozen Foods Ordering System | Medium | 4.7 | 2026-03-20 05:02:11 | Deep Dive |
| CVE-2026-4470 | itsourcecode Online Frozen Foods Ordering System admin_edit_menu.php sql injection | itsourcecode | Online Frozen Foods Ordering System | Medium | 4.7 | 2026-03-20 04:32:11 | Deep Dive |
| CVE-2026-4469 | itsourcecode Online Frozen Foods Ordering System admin_edit_menu_action.php sql injection | itsourcecode | Online Frozen Foods Ordering System | Medium | 4.7 | 2026-03-20 04:02:12 | Deep Dive |
| CVE-2026-24494 | SQL injection vulnerability in Order Up Online Ordering System | Order Up | Online Ordering System | Critical | 9.8 | 2026-02-23 01:24:48 | Deep Dive |
| CVE-2026-0974 | Orderable <= 1.20.0 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin Installation | orderable | Orderable – WordPress Restaurant Online Ordering System and Food Ordering Plugin | High | 8.8 | 2026-02-19 04:36:22 | Deep Dive |
| CVE-2026-2136 | projectworlds Online Food Ordering System view-ticket.php sql injection | projectworlds | Online Food Ordering System | High | 7.3 | 2026-02-08 05:02:07 | Deep Dive |
| CVE-2026-1159 | itsourcecode Online Frozen Foods Ordering System order_online.php sql injection | itsourcecode | Online Frozen Foods Ordering System | High | 7.3 | 2026-01-19 15:02:07 | Deep Dive |
| CVE-2025-15167 | itsourcecode Online Cake Ordering System detailtransac.php sql injection | itsourcecode | Online Cake Ordering System | High | 7.3 | 2025-12-29 02:02:08 | Deep Dive |
| CVE-2025-15166 | itsourcecode Online Cake Ordering System updatesupplier.php sql injection | itsourcecode | Online Cake Ordering System | High | 7.3 | 2025-12-29 01:32:07 | Deep Dive |
| CVE-2025-15165 | itsourcecode Online Cake Ordering System updatecustomer.php sql injection | itsourcecode | Online Cake Ordering System | High | 7.3 | 2025-12-29 01:02:09 | Deep Dive |
| CVE-2025-15074 | itsourcecode Online Frozen Foods Ordering System customer_details.php sql injection | itsourcecode | Online Frozen Foods Ordering System | High | 7.3 | 2025-12-25 02:32:06 | Deep Dive |
| CVE-2025-15073 | itsourcecode Online Frozen Foods Ordering System contact_us.php sql injection | itsourcecode | Online Frozen Foods Ordering System | High | 7.3 | 2025-12-24 23:02:08 | Deep Dive |