A vulnerability was detected in code-projects E-Commerce...
Moderate severity
Unreviewed
Published
Oct 9, 2025
to the GitHub Advisory Database
•
Updated Oct 10, 2025
Description
Published by the National Vulnerability Database
Oct 8, 2025
Published to the GitHub Advisory Database
Oct 9, 2025
Last updated
Oct 10, 2025
A vulnerability was detected in code-projects E-Commerce Website 1.0. This impacts an unknown function of the file /pages/product_add.php. Performing manipulation of the argument prod_name results in sql injection. The attack may be initiated remotely. The exploit is now public and may be used.
References