A security flaw has been discovered in code-projects...
Moderate severity
Unreviewed
Published
Mar 29, 2026
to the GitHub Advisory Database
•
Updated Mar 29, 2026
Description
Published by the National Vulnerability Database
Mar 28, 2026
Published to the GitHub Advisory Database
Mar 29, 2026
Last updated
Mar 29, 2026
A security flaw has been discovered in code-projects Simple Food Order System 1.0. This impacts an unknown function of the file /all-tickets.php of the component Parameter Handler. Performing a manipulation of the argument Status results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks.
References