CVE-2024-31961: Scable Shopfloor Guide

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

A SQL injection vulnerability in unit.php in Sonic Shopfloor.guide before 3.1.3 allows remote attackers to execute arbitrary SQL commands via the level2 parameter.

Affected products

  • Scable Shopfloor Guide: before 3.1.3 (fixed in 3.1.3)

Published 2024-05-08. Last modified 2026-06-17.