CVE-2024-37791: Duxcms Project Duxcms

Medium severity, CVSS 6.0. EPSS: 0.6% chance of exploitation in the next 30 days.

DuxCMS3 v3.1.3 was discovered to contain a SQL injection vulnerability via the keyword parameter at /article/Content/index?class_id.

Affected products

Published 2024-06-18. Last modified 2026-06-17.