CVE-2024-37791: Duxcms Project Duxcms
Medium severity, CVSS 6.0. EPSS: 0.6% chance of exploitation in the next 30 days.
DuxCMS3 v3.1.3 was discovered to contain a SQL injection vulnerability via the keyword parameter at /article/Content/index?class_id.
Affected products
- Duxcms Project Duxcms: version 3.1.3 only
Published 2024-06-18. Last modified 2026-06-17.