A vulnerability was found in SourceCodester Food Ordering System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /routers/edit-orders.php. The manipulation of the argument ID results in sql injection.
This vulnerability is known as CVE-2025-12931. It is possible to launch the attack remotely. Furthermore, an exploit is available.