Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Pizzafy Ecommerce System — Vulnerabilities & Security Advisories 25

All 25 CVE vulnerabilities found in Pizzafy Ecommerce System, with AI-generated Chinese analysis, references, and POCs.

This page aggregates known vulnerabilities for the Pizzafy Ecommerce System, categorizing them by vendor and specific weakness type. It serves as a centralized repository for security researchers and system administrators seeking to understand the risk profile of this specific e-commerce platform. The collection encompasses a wide variety of security flaws, including but not limited to cross-site scripting, SQL injection, improper access control, and remote code execution issues that have been publicly disclosed or reported to the vendor. The data covers vulnerabilities identified from the initial release of the system up to the most recent updates, ensuring a comprehensive historical view of the product's security posture over time. Visitors to this resource can effectively track advisory notices issued by the vendor as patches are released, allowing for timely mitigation of critical risks. Furthermore, users can delve into the specifics of each weakness class to understand the underlying technical causes and potential impact vectors within the Pizzafy architecture. The page also provides a detailed timeline of vulnerability history, enabling stakeholders to assess the frequency and severity of security incidents associated with the product across different versions. This structured approach facilitates better risk management and informed decision-making regarding system updates and remediation strategies. By consolidating these disparate sources of security information, the page offers a clear, factual overview of the current threat landscape surrounding the Pizzafy Ecommerce System.

Vendor: SourceCodester

CVE IDTitleCVSSSeverityPublished
CVE-2026-16226 SourceCodester Pizzafy Ecommerce System admin_class_novo.php save_settings unrestricted upload CWE-434 4.7 Medium2026-07-19
CVE-2026-10559 SourceCodester Pizzafy Ecommerce System index.php file inclusion CWE-73 6.3 Medium2026-06-02
CVE-2026-10558 SourceCodester Pizzafy Ecommerce System index.php file inclusion CWE-73 6.3 Medium2026-06-02
CVE-2026-8117 SourceCodester Pizzafy Ecommerce System index.php cross site scripting CWE-79 4.3 Medium2026-05-07
CVE-2026-7410 SourceCodester Pizzafy Ecommerce System ajax.php add_to_cart sql injection CWE-89 6.3 Medium2026-04-29
CVE-2026-7409 SourceCodester Pizzafy Ecommerce System ajax.php save_user sql injection CWE-89 4.7 Medium2026-04-29
CVE-2026-7408 SourceCodester Pizzafy Ecommerce System ajax.php save_menu sql injection CWE-89 4.7 Medium2026-04-29
CVE-2026-7407 SourceCodester Pizzafy Ecommerce System Setting ajax.php save_settings sql injection CWE-89 4.7 Medium2026-04-29
CVE-2026-7394 SourceCodester Pizzafy Ecommerce System GET Parameter view_order.php sql injection CWE-89 4.7 Medium2026-04-29
CVE-2026-7393 SourceCodester Pizzafy Ecommerce System File Extension admin_class_novo.php save_menu unrestricted upload CWE-434 4.7 Medium2026-04-29
CVE-2026-7297 SourceCodester Pizzafy Ecommerce System ajax.php save_user cross site scripting CWE-79 2.4 Low2026-04-28
CVE-2026-7296 SourceCodester Pizzafy Ecommerce System ajax.php save_order cross site scripting CWE-79 2.4 Low2026-04-28
CVE-2026-7295 SourceCodester Pizzafy Ecommerce System ajax.php save_menu cross site scripting CWE-79 2.4 Low2026-04-28
CVE-2026-7294 SourceCodester Pizzafy Ecommerce System index.php save_settings cross site scripting CWE-79 2.4 Low2026-04-28
CVE-2026-7293 SourceCodester Pizzafy Ecommerce System ajax.php delete_category sql injection CWE-89 4.7 Medium2026-04-28
CVE-2026-7268 SourceCodester Pizzafy Ecommerce System ajax.php save_category sql injection CWE-89 6.3 Medium2026-04-28
CVE-2026-7267 SourceCodester Pizzafy Ecommerce System view_prod.php sql injection CWE-89 6.3 Medium2026-04-28
CVE-2026-7266 SourceCodester Pizzafy Ecommerce System ajax.php save_order sql injection CWE-89 6.3 Medium2026-04-28
CVE-2026-7265 SourceCodester Pizzafy Ecommerce System index.php category sql injection CWE-89 6.3 Medium2026-04-28
CVE-2026-7264 SourceCodester Pizzafy Ecommerce System ajax.php get_cart_items sql injection CWE-89 6.3 Medium2026-04-28
CVE-2026-7228 SourceCodester Pizzafy Ecommerce System ajax.php get_cart_count sql injection CWE-89 7.3 High2026-04-28
CVE-2026-7227 SourceCodester Pizzafy Ecommerce System ajax.php login sql injection CWE-89 7.3 High2026-04-28
CVE-2026-7226 SourceCodester Pizzafy Ecommerce System ajax.php login2 sql injection CWE-89 7.3 High2026-04-28
CVE-2026-7225 SourceCodester Pizzafy Ecommerce System ajax.php delete_menu sql injection CWE-89 7.3 High2026-04-28
CVE-2026-7224 SourceCodester Pizzafy Ecommerce System ajax.php delete_cart sql injection CWE-89 7.3 High2026-04-28

All 25 known CVE vulnerabilities affecting Pizzafy Ecommerce System with full Chinese analysis, references, and POCs where available.