Sourcecodester · Simple Food Ordering System · CVE-2026-13571
**Name of the Vulnerable Software and Affected Versions**
SourceCodester Simple Food Ordering System version 1.0
**Description**
A remote flaw exists in the `/cart.php` file. Manipulating the `item price` argument can lead to business logic errors, which occur when a system's design allows a user to manipulate the intended flow of a business process to achieve an unauthorized result.
**Recommendations**
As a temporary workaround, restrict access to the `/cart.php` file or avoid using the `item price` parameter until a fix is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.