CVE-2024-13149: Arma Store Armalife
Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 200 - Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Arma Store Armalife allows SQL Injection. This issue affects Armalife: through 20250916. NOTE: The vendor did not inform about the completion of the fixing process within the specified time. The CVE will be updated when new information becomes available.
Affected products
- Arma Store Armalife: up to and including 20250916
Published 2025-09-16. Last modified 2026-06-17.