CVE-2025-11596 | code-projects E-Commerce Website 1.0 delete_order_details.php order_id sql injection
A vulnerability categorized as critical has been discovered in code-projects E-Commerce Website 1.0. The affected element is an unknown function of the file /pages/delete_order_details.php. Executing manipulation of the argument order_id can lead to sql injection.
This vulnerability is handled as CVE-2025-11596. The attack can be executed remotely. Additionally, an exploit exists.