GHSA-rrq2-7gjw-ch94
GitHub Security Advisory
⚠ Unreviewed
CRITICAL
Has CVE
Advisory Details
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'ticket_id' parameter of the routers/ticket-message.php resource does not validate the characters received and they are sent unfiltered to the database.
Related CVEs
Key Information
9.0
/10
Dataset
Last updated: August 1, 2025 6:44 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.