CVE-2024-24312: Vaales Technologies V Qrs

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

SQL injection vulnerability in Vaales Technologies V_QRS v.2024-01-17 allows a remote attacker to obtain sensitive information via the Models/UserModel.php component.

Affected products

Published 2024-05-01. Last modified 2026-06-17.