CVE-2026-7265

Severity CVSS v4.0:
LOW
Type:
CWE-74 Injection
Publication date:
28/04/2026
Last modified:
29/04/2026

Description

A security vulnerability has been detected in SourceCodester Pizzafy Ecommerce System 1.0. The affected element is the function Category of the file pizza/index.php?page=category. The manipulation of the argument ID leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.