CVE-2026-13571: Sourcecodester Simple Food Ordering System

Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.

A flaw has been found in SourceCodester Simple Food Ordering System 1.0. The affected element is an unknown function of the file /cart.php. Executing a manipulation of the argument item_price can lead to business logic errors. The attack may be performed from remote. The exploit has been published and may be used.

Affected products

Published 2026-06-29. Last modified 2026-06-29.