CVE-2026-19904: Sourcecodester Online Book Store System

Low severity, CVSS 2.4. EPSS: 0.4% chance of exploitation in the next 30 days.

A vulnerability was found in SourceCodester Online Book Store System 1.0. This vulnerability affects unknown code of the file /admin/index.php?page=site_settings of the component System Settings Module. The manipulation results in cross site scripting. The attack can be executed remotely. The exploit has been made public and could be used.

Affected products

Published 2026-08-15. Last modified 2026-08-20.