CVE-2026-3137

A security vulnerability has been detected in CodeAstro Food Ordering System 1.0. This affects an unknown function of the file food_ordering.exe. Such manipulation leads to stack-based buffer overflow. The attack can only be performed from a local environment. The exploit has been disclosed publicly and may be used.
References
Link Resource
https://codeastro.com/ Product
https://github.com/910biter/cve/issues/3 Exploit Third Party Advisory
https://vuldb.com/?ctiid.347631 Permissions Required VDB Entry
https://vuldb.com/?id.347631 Third Party Advisory VDB Entry
https://vuldb.com/?submit.758512 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:codeastro:food_ordering_system:1.0:*:*:*:*:*:*:*

History

25 Feb 2026, 15:12

Type Values Removed Values Added
First Time Codeastro
Codeastro food Ordering System
References () https://codeastro.com/ - () https://codeastro.com/ - Product
References () https://github.com/910biter/cve/issues/3 - () https://github.com/910biter/cve/issues/3 - Exploit, Third Party Advisory
References () https://vuldb.com/?ctiid.347631 - () https://vuldb.com/?ctiid.347631 - Permissions Required, VDB Entry
References () https://vuldb.com/?id.347631 - () https://vuldb.com/?id.347631 - Third Party Advisory, VDB Entry
References () https://vuldb.com/?submit.758512 - () https://vuldb.com/?submit.758512 - Third Party Advisory, VDB Entry
CPE cpe:2.3:a:codeastro:food_ordering_system:1.0:*:*:*:*:*:*:*
CWE CWE-787

25 Feb 2026, 01:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-25 01:16

Updated : 2026-02-25 15:12


NVD link : CVE-2026-3137

Mitre link : CVE-2026-3137

CVE.ORG link : CVE-2026-3137


JSON object : View

Products Affected

codeastro

  • food_ordering_system
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-121

Stack-based Buffer Overflow

CWE-787

Out-of-bounds Write