CVE Tools

Online Food Ordering System

75 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Online Food Ordering System, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.

Online Food Ordering System CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Online Food Ordering System CVEs per month
MonthCVEs
2024-100
2024-110
2024-122
2025-011
2025-020
2025-031
2025-040
2025-059
2025-060
2025-070
2025-080
2025-090
2025-101
2025-110
2025-120
2026-010
2026-021
2026-0313
2026-041
2026-050
2026-061
2026-070
2026-080
2026-093

Severity

How the 75 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical2331%
  • High2837%
  • Medium2027%
  • Low45%

Latest CVEs

The 15 most recently published vulnerabilities affecting Online Food Ordering System.

  1. CVE-2026-92385SourceCodester Online Food Ordering System Category Update update_category.php cross site scripting2.4
  2. CVE-2026-90855SourceCodester/katojkalemba Online Food Ordering System order.php sql injection7.3
  3. CVE-2026-90854SourceCodester/katojkalemba Online Food Ordering System category-foods.php sql injection7.3
  4. CVE-2026-10694SourceCodester Online Food Ordering System index.php include file inclusion7.3
  5. CVE-2026-5811SourceCodester Online Food Ordering System POST Parameter Actions.php save_product logic error5.4
  6. CVE-2026-5157code-projects Online Food Ordering System Order order.php cross site scripting4.3
  7. CVE-2026-30530A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the Actions.php file (specifically the save_customer action). The application fails to properly sanitize u...9.8
  8. CVE-2026-30531A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the Actions.php file (specifically the save_category action). The application fails to properly sanitize u...8.8
  9. CVE-2026-30529A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the Actions.php file (specifically the save_user action). The application fails to properly sanitize user ...8.8
  10. CVE-2026-30533A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the admin/manage_product.php file via the "id" parameter.9.8
  11. CVE-2026-30527A Stored Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the Category management module within the admin panel. The application fails to proper...5.4
  12. CVE-2026-30532A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the admin/view_product.php file via the "id" parameter.9.8
  13. CVE-2026-30534A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in admin/manage_category.php via the "id" parameter.8.3
  14. CVE-2026-4900code-projects Online Food Ordering System localhost.sql privilege escalation5.3
  15. CVE-2026-4899code-projects Online Food Ordering System food.php cross site scripting2.4

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store