CVE-2024-26517: Rems School Task Manager

Critical severity, CVSS 9.1. EPSS: 0.8% chance of exploitation in the next 30 days.

SQL Injection vulnerability in School Task Manager v.1.0 allows a remote attacker to obtain sensitive information via a crafted payload to the delete-task.php component.

Affected products

  • Rems School Task Manager: version 1.0 only

Published 2024-05-14. Last modified 2026-06-17.