Vulnerabilities (CVE)

Filtered by vendor Remyandrade Subscribe
Filtered by product School Task Manager
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-28277 1 Remyandrade 1 School Task Manager 2025-03-27 N/A 6.1 MEDIUM
In Sourcecodester School Task Manager v1.0, a vulnerability was identified within the subject_name= parameter, enabling Stored Cross-Site Scripting (XSS) attacks. This vulnerability allows attackers to manipulate the subject's name, potentially leading to the execution of malicious JavaScript payloads.
CVE-2024-24141 1 Remyandrade 1 School Task Manager 2024-11-21 N/A 9.8 CRITICAL
Sourcecodester School Task Manager App 1.0 allows SQL Injection via the 'task' parameter.