A SQL Injection vulnerability exists in the action.php...
High severity
Unreviewed
Published
Jul 29, 2025
to the GitHub Advisory Database
•
Updated Aug 28, 2025
Description
Published by the National Vulnerability Database
Jul 29, 2025
Published to the GitHub Advisory Database
Jul 29, 2025
Last updated
Aug 28, 2025
A SQL Injection vulnerability exists in the action.php endpoint of PuneethReddyHC Online Shopping System Advanced 1.0 due to improper sanitization of user-supplied input in the keyword POST parameter.
References