CVE-2020-19114: Projectworlds Online Book Store Project In PHP

Critical severity, CVSS 9.8. EPSS: 1.9% chance of exploitation in the next 30 days.

SQL Injection vulnerability in Online Book Store v1.0 via the publisher parameter to edit_book.php, which could let a remote malicious user execute arbitrary code.

Affected products

Published 2021-05-06. Last modified 2026-06-17.