Ghostwire

CVE-2026-7268: A vulnerability has been found in SourceCodester Pizzafy Ecommerce System 1.0. This impacts the function save_category...

MEDIUM CVSS 5.5 EPSS 0.03%

Published: April 28, 2026 | Last Modified: April 28, 2026

Description

A vulnerability has been found in SourceCodester Pizzafy Ecommerce System 1.0. This impacts the function save_category of the file /admin/ajax.php?action=save_category. Such manipulation of the argument Name leads to sql injection. The attack may be performed from remote. The exploit has been disclosed to the public and may be used.

Ghostwire Analysis — What This Means Practically

Exploitation Probability (EPSS): Low — 0.03% (10th percentile)

Low exploitation probability based on current threat landscape data. Standard patching timeline is appropriate.

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (2 articles)

References