A vulnerability has been found in code-projects Simple Food Ordering System 1.0 and classified as problematic. This affects an unknown part of the file /editcategory.php. The manipulation of the argument pname leads to cross site scripting.
This vulnerability is traded as CVE-2025-12298. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.