SQL injection vulnerability in sourcecodester online-book-store 1.0 allows remote attackers to view sensitive information via the id paremeter in application URL.
https://www.exploit-db.com/exploits/48775
https://packetstormsecurity.com/files/159000/Online-Book-Store-1.0-SQL-Injection.html