CVE-2026-15703: Sourcecodester Simple And Nice Shopping Cart Script

High severity, CVSS 7.3. EPSS: 0.4% chance of exploitation in the next 30 days.

A vulnerability was detected in SourceCodester Simple and Nice Shopping Cart Script 1.0. This vulnerability affects unknown code of the file /admin/userproductdeletequery.php. Performing a manipulation of the argument user_id results in sql injection. It is possible to initiate the attack remotely. The exploit is now public and may be used.

Affected products

Published 2026-07-14. Last modified 2026-07-15.