CVE-2026-5019Disclosure(carmelo / simple_food_order_system)

LOWCVSS 9.8 · CRITICAL

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A security vulnerability has been detected in code-projects Simple Food Order System 1.0. Affected by this vulnerability is an unknown functionality of the file all-orders.php of the component Parameter Handler. The manipulation of the argument Status leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-89

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • simple_food_order_system

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • 3 total mentions across 1 day

Affected systems

Vendors
Products
simple_food_order_system

1 version affected across 1 product

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-03-29: 3Technical Details · 2026-03-29: 203-29
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • CVEarity@CVEarity
    Disclosure

    ⚡ New CVE Alert: CVE-2026-5019 📊 Severity: 7.3 🚨 Risk Level: High 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-5019 #CVE-2026-5019 #CVE #High #CyberSecurity #InfoSec https://t.co/4yTyMVbKML

    Post summary

    The tweet announces CVE-2026-5019, noting its severity (7.3) and linking to its NVD entry, without providing PoC, exploit, or detailed technical information.

    0000034
    123 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-5019 A security vulnerability has been detected in code-projects Simple Food Order System 1.0. Affected by this vulnerability is an unknown functionality of the file all-ord… https://www.cve.org/CVERecord?id=CVE-2026-5019

    Post summary

    A concise notice about a detected vulnerability (CVE‑2026‑5019) in Simple Food Order System 1.0, with minimal technical detail and no information on PoC, exploit, patch, or active exploitation.

    0000058
    56.9K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-5019 - code-projects Simple Food Order System Parameter all-orders.php sql injection Intel Report: https://ift.tt/wPqsGN5

    Post summary

    The alert announces a SQL injection vulnerability (CVE-2026-5019) in the Simple Food Order System’s all-orders.php and provides a link to an Intel report for further details.

    0000024
    280 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appcarmelosimple_food_order_system1.0--

Explore more