A vulnerability described as critical has been identified in code-projects Simple Cafe Ordering System 1.0. Affected by this issue is some unknown functionality of the file /login.php. Such manipulation of the argument Username leads to sql injection.
This vulnerability is listed as CVE-2025-13201. The attack may be performed from remote. In addition, an exploit is available.