A vulnerability categorized as critical has been discovered in SourceCodester Simple Food Ordering System 1.0 . The affected element is an unknown function of the file /cart.php . Executing a manipulation of the argument item_price can lead to business logic errors. This vulnerability appears as CVE-2026-13571 . The attack may be performed from remote. In addition, an exploit is available.