A vulnerability was found in code-projects Simple Food Ordering System 1.0. It has been classified as critical. This impacts an unknown function of the file /addproduct.php. The manipulation of the argument Category leads to sql injection.
This vulnerability is documented as CVE-2025-11612. The attack can be initiated remotely. Additionally, an exploit exists.