← CVE Tracker
7.3HIGH

CVE-2025-11396 — A vulnerability was identified in code-projects Simple Food Ordering System 1.0.

Fabian · Simple Food Ordering System · Published 7 Oct 2025 · Modified 30 Sept 2026

Description

A vulnerability was identified in code-projects Simple Food Ordering System 1.0. Impacted is an unknown function of the file /product.php. Such manipulation of the argument Category leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used.

References

What to do
  1. Check whether Simple Food Ordering System is in your asset inventory.
  2. Patch in the next maintenance window; prioritise internet-facing systems.
  3. Record the decision in your risk register for audit evidence.
Alert me on similar CVEs →
Share

Link: adminadda.com/cve/CVE-2025-11396