A weakness has been identified in SourceCodester Pizzafy Ecommerce System 1.0. Impacted is the function get_cart_items of the file /admin/ajax.php?action=get_cart_items. Executing a manipulation of the argument ID can lead to sql injection. The attack may be launched remotely. The exploit has been made available to the public and could be used for attacks.
References
Configurations
No configuration.
History
05 May 2026, 21:16
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://vuldb.com/submit/802437 - |
28 Apr 2026, 10:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-28 10:16
Updated : 2026-05-05 21:16
NVD link : CVE-2026-7264
Mitre link : CVE-2026-7264
CVE.ORG link : CVE-2026-7264
JSON object : View
Products Affected
No product.
