CVE-2022-31336: Online Ordering System Project Online Ordering System
Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.
Online Ordering System 2.3.2 is vulnerable to SQL Injection via /ordering/admin/stockin/loaddata.php.
Affected products
- Online Ordering System Project Online Ordering System: version 2.3.2 only
Published 2022-06-02. Last modified 2026-06-17.