Vendorscarmelofood_ordering_review_systemall versions
Vulnerabilities

carmelo (Carmelo Garcia) Food Ordering Review System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2025-7814
code-projects Food Ordering Review System signup_function.php sql injection
Published 2025-07-18 · Analyzed
9.8EPSS 0.004
CVE-2025-8165
code-projects Food Review System approve_reservation.php sql injection
Published 2025-07-25 · Analyzed
8.8EPSS 0.005
CVE-2025-8018
code-projects Food Ordering Review System reservation_page.php sql injection
Published 2025-07-22 · Analyzed
8.8EPSS 0.004
CVE-2025-56276
code-projects Food Ordering Review System 1.0 is vulnerable to Cross Site Scripting (XSS) in the registration function. An attacker enters malicious JavaScript code as a username, which triggers the XSS vulnerability when the admin views user information, resulting in the disclosure of the admin's cookie information.
Published 2025-09-16 · Analyzed
5.4EPSS 0.002
CVE-2025-56280
code-projects Food Ordering Review System 1.0 is vulnerable to Cross Site Scripting (XSS) in the area where users submit reservation information.
Published 2025-09-16 · Analyzed
5.4EPSS 0.002