LOW 2.0 NVD
CVE-2026-76995
A vulnerability was identified in SourceCodester Simple Online Food Ordering System 1.0. This issue affects some unknown processing of the file /admin/ajax.php?
A vulnerability was identified in SourceCodester Simple Online Food Ordering System 1.0. This issue affects some unknown processing of the file /admin/ajax.php?action=save_menu. The manipulation of the argument img leads to unrestricted upload. The attack is possible to be carried out remotely. The exploit is publicly available and might be used.
References
- https://github.com/hubdk01/cve/issues/1
- https://vuldb.com/cve/CVE-2026-76995
- https://vuldb.com/submit/880371
- https://vuldb.com/vuln/393618
- https://vuldb.com/vuln/393618/cti
This low severity vulnerability with a CVSS score of 2.0 was published on 2026-08-20 via NVD.
vulnfeed aggregates 11502 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.