Loading market data...
← Back to CVE feed

CVE-2026-7295

LOW CVSS 2.4 View on NVD ↗

Description

A vulnerability has been found in SourceCodester Pizzafy Ecommerce System 1.0. Affected by this issue is the function save_menu of the file /admin/ajax.php?action=save_menu. Such manipulation of the argument Name leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N
Published: Apr 28, 2026 19:37 UTC Modified: Apr 29, 2026 01:00 UTC