CVE-2025-13202

Published
View on NVD ↗
CVSS v3
3.5
LOW
CVSS v2
4
MEDIUM
Affected
1
PROJECT

Description

A security flaw has been discovered in code-projects Simple Cafe Ordering System 1.0. This affects an unknown part of the file /add_to_cart. Performing manipulation of the argument product_name results in cross site scripting. It is possible to initiate the attack remotely. The exploit has been released to the public and may be exploited.

Proof-of-Concept and Advisory for Simple Cafe Ordering System XSS
GitHubGitHub