CVE-2026-14693
MEDIUM SEVERITYCVSS Score & Metrics
Base Score
5.4 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Vulnerability Description
A flaw has been found in SourceCodester Multi-Vendor Online Grocery Management System 1.0. Affected by this vulnerability is the function cancel_order of the file classes/Master.php. Executing a manipulation can lead to improper authorization. The attack may be performed from remote. The exploit has been published and may be used.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-266
Source
NVD
Vendor
SourceCodester
Product
Multi-Vendor Online Grocery Management System
Discussion (0)
Add Comment
No comments yet. Be the first!