CVE-2020-19110: Projectworlds Online Book Store Project In PHP

Critical severity, CVSS 9.8. EPSS: 1.6% chance of exploitation in the next 30 days.

SQL Injection vulnerability in Online Book Store v1.0 via the bookisbn parameter to book.php parameter, which could let a remote malicious user execute arbitrary code.

Affected products

Published 2021-05-06. Last modified 2026-06-17.