CVE-2025-12931

Source
https://cve.org/CVERecord?id=CVE-2025-12931
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-12931.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-12931
Published
2025-11-10T05:15:43.513Z
Modified
2026-03-14T15:03:45.266931Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A vulnerability was found in SourceCodester Food Ordering System 1.0. Affected by this vulnerability is an unknown functionality of the file /routers/edit-orders.php. The manipulation of the argument ID results in sql injection. It is possible to launch the attack remotely. The exploit has been made public and could be used.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-12931.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "1.0"
            }
        ]
    }
]