Sourcecodester Online Book Store System
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Sourcecodester Online Book Store System.
By the Year
In 2026 there have been 4 vulnerabilities in Sourcecodester Online Book Store System with an average score of 4.7 out of ten.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 4 | 4.68 |
It may take a day or so for new Online Book Store System vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Sourcecodester Online Book Store System Security Vulnerabilities
Imp File Include in SourceCodester Online Book Store 1.0 Admin
CVE-2026-15540
4.3 - Medium
- July 13, 2026
A vulnerability was detected in SourceCodester Online Book Store System 1.0. The affected element is an unknown function of the file /admin/index.php of the component Administrative Interface. Performing a manipulation of the argument page results in improper control of filename for include/require statement in php program. It is possible to initiate the attack remotely. The exploit is now public and may be used.
Remote file include
SourceCodester Online Book Store 1.0 Unrestricted Remote Upload
CVE-2026-15539
4.7 - Medium
- July 13, 2026
A security vulnerability has been detected in SourceCodester Online Book Store System 1.0. Impacted is an unknown function of the file /admin/index.php?page=books of the component Book Image Upload Feature. Such manipulation leads to unrestricted upload. The attack may be performed from remote. The exploit has been disclosed publicly and may be used.
Unrestricted File Upload
SQLi in SourceCodester Online Book Store System 1.0 admin/login.php
CVE-2026-15537
7.3 - High
- July 13, 2026
A security flaw has been discovered in SourceCodester Online Book Store System 1.0. This vulnerability affects unknown code of the file admin/login.php. The manipulation of the argument Username results in sql injection. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.
SQL Injection
CVE-2026-15532 XSS in SourceCodester Online Book Store Sys 1.0 User MGMT Mod
CVE-2026-15532
2.4 - Low
- July 13, 2026
A vulnerability was identified in SourceCodester Online Book Store System 1.0. This issue affects some unknown processing of the component User Management Module. Such manipulation of the argument Name/Username leads to cross site scripting. The attack can be executed remotely. The exploit is publicly available and might be used.
XSS
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Sourcecodester Online Book Store System or by Sourcecodester? Click the Watch button to subscribe.