CVE-2020-24208: Online Shopping Alphaware Project Online Shopping Alphaware

Critical severity, CVSS 9.8. EPSS: 3.3% chance of exploitation in the next 30 days.

A SQL injection vulnerability in SourceCodester Online Shopping Alphaware 1.0 allows remote unauthenticated attackers to bypass the authentication process via email and password parameters.

Affected products

Published 2020-08-17. Last modified 2026-06-17.