A weakness has been identified in SourceCodester Pizzafy Ecommerce System 1.0. Impacted is the function get_cart_items of the file /admin/ajax.php?action=get_cart_items. Executing a manipulation of the argument ID can lead to sql injection. The attack may be launched remotely. The exploit has been made available to the public and could be used for attacks.
Metrics
Affected Vendors & Products
References
History
Tue, 28 Apr 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sourcecodester
Sourcecodester pizzafy Ecommerce System |
|
| Vendors & Products |
Sourcecodester
Sourcecodester pizzafy Ecommerce System |
Tue, 28 Apr 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in SourceCodester Pizzafy Ecommerce System 1.0. Impacted is the function get_cart_items of the file /admin/ajax.php?action=get_cart_items. Executing a manipulation of the argument ID can lead to sql injection. The attack may be launched remotely. The exploit has been made available to the public and could be used for attacks. | |
| Title | SourceCodester Pizzafy Ecommerce System ajax.php get_cart_items sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-04-28T09:30:14.143Z
Updated: 2026-04-28T09:30:14.143Z
Reserved: 2026-04-28T05:23:13.636Z
Link: CVE-2026-7264
No data.
Status : Received
Published: 2026-04-28T10:16:03.883
Modified: 2026-04-28T10:16:03.883
Link: CVE-2026-7264
No data.