CVE-2026-16226Medium· 4.7▾ SunlitA weakness has been identified in SourceCodester Pizzafy Ecommerce System 1.0. This affects the function save_settings of the file /admin/admin_class_novo.php. This manipulation of the argument img causes unrestricted upload. The attack …
▾ Sunlit zone — Low / medium · no exploitation signal
impact 25.9 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 19.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.2%
0.2% → 0.4%
A weakness has been identified in SourceCodester Pizzafy Ecommerce System 1.0. This affects the function save_settings of the file /admin/admin_class_novo.php. This manipulation of the argument img causes unrestricted upload. The attack is possible to be carried out remotely.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-10600High· 7.3A flaw has been found in SourceCodester Online Exam Form Submission 1.0
CVE-2026-15539Medium· 4.7A security vulnerability has been detected in SourceCodester Online Book Store System 1.0
CVE-2025-10615Medium· 6.3A vulnerability was identified in itsourcecode E-Commerce Website 1.0
CVE-2025-10616Medium· 6.3A security flaw has been discovered in itsourcecode E-Commerce Website 1.0
CVE-2025-13815Medium· 6.3A weakness has been identified in moxi159753 Mogu Blog v2 up to 5.2
CVE-2026-19383Medium· 4.7A security vulnerability has been detected in saithink/saigroup SaiAdmin up to 5.0.1