Bangresto 1.0 is vulnberable to SQL Injection via the itemqty%5B%5D parameter.
View the template here CVE-2022-46443.yaml
echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2022/CVE-2022-46443.yaml
References: