Online Shopping System Code Projects Online Shopping System

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Code Projects Online Shopping System.

By the Year

In 2026 there have been 6 vulnerabilities in Code Projects Online Shopping System with an average score of 5.5 out of ten.

Year Vulnerabilities Average Score
2026 6 5.53

It may take a day or so for new Online Shopping System vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Code Projects Online Shopping System Security Vulnerabilities

CVE-2026-19998 PHP XSS in code-projects OSS 1.0 offersmail.php email arg
CVE-2026-19998 5.3 - Medium - August 17, 2026

A weakness has been identified in code-projects Online Shopping System 1.0. Impacted is an unknown function of the file offersmail.php. Executing a manipulation of the argument email can lead to cross site scripting. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.

XSS

SQLi in Online Shopping System 1.0 /checkout_process.php via total_count
CVE-2026-19923 5.3 - Medium - August 16, 2026

A weakness has been identified in code-projects Online Shopping System 1.0. This affects an unknown part of the file /checkout_process.php. Executing a manipulation of the argument total_count can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.

SQL Injection

Online Shopping System 1.0 XSS via amount_1 in checkout.php
CVE-2026-19922 5.1 - Medium - August 16, 2026

A security flaw has been discovered in code-projects Online Shopping System 1.0. Affected by this issue is some unknown functionality of the file /checkout.php. Performing a manipulation of the argument amount_1 results in cross site scripting. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks.

XSS

SQLi via /homeaction.php cat_id in code-projects Online Shopping System 1.0
CVE-2026-19921 5.3 - Medium - August 16, 2026

A vulnerability was identified in code-projects Online Shopping System 1.0. Affected by this vulnerability is an unknown functionality of the file /homeaction.php. Such manipulation of the argument cat_id leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.

SQL Injection

SQLi in codeprojects OSS 1.0 via /action.php proId (remote)
CVE-2026-19920 5.3 - Medium - August 15, 2026

A vulnerability was determined in code-projects Online Shopping System 1.0. Affected is an unknown function of the file /action.php. This manipulation of the argument proId causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.

SQL Injection

CVE-2026-19919: Online Shopping System 1.0 - Remote SQLi in /login.php
CVE-2026-19919 6.9 - Medium - August 15, 2026

A vulnerability was found in code-projects Online Shopping System 1.0. This impacts an unknown function of the file /login.php of the component Login. The manipulation of the argument email results in sql injection. The attack may be performed from remote. The exploit has been made public and could be used.

SQL Injection

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Code Projects Online Shopping System or by Code Projects? Click the Watch button to subscribe.

subscribe